Update dependency org.elasticsearch:elasticsearch to v7 #466
Security Report
You have successfully remediated 16 vulnerabilities, but introduced 1 new vulnerabilities in this branch.
❌ New vulnerabilities:
CVE | Severity | CVSS Score | Vulnerable Library | Suggested Fix | Issue |
---|---|---|---|---|---|
CVE-2023-46673Path to dependency file: /api/pacman-api-statistics/pom.xml Path to vulnerable library: /api/pacman-api-statistics/pom.xml,/api/pacman-api-asset/pom.xml,/api/pacman-api-compliance/pom.xml,/jobs/pacman-rule-engine-2.0/pom.xml,/api/pacman-api-vulnerability/pom.xml,/jobs/pacman-cloud-notifications/pom.xml,/api/pacman-api-notifications/pom.xml Dependency Hierarchy: -> ❌ elasticsearch-7.17.13.jar (Vulnerable Library) |
High | 7.5 | elasticsearch-7.17.13.jar | Upgrade to version: org.elasticsearch:elasticsearch:7.17.14,8.10.3 | None |
✔️ Remediated vulnerabilities:
CVE | Vulnerable Library |
---|---|
CVE-2020-7021 | elasticsearch-5.6.8.jar |
CVE-2018-3824 | elasticsearch-5.6.8.jar |
CVE-2018-3824 | elasticsearch-5.6.2.jar |
CVE-2019-7614 | elasticsearch-5.6.2.jar |
CVE-2018-3823 | elasticsearch-5.6.8.jar |
CVE-2023-31418 | elasticsearch-5.6.8.jar |
CVE-2018-3831 | elasticsearch-5.6.8.jar |
CVE-2020-7021 | elasticsearch-5.6.2.jar |
CVE-2020-7020 | elasticsearch-5.6.8.jar |
CVE-2018-3823 | elasticsearch-5.6.2.jar |
CVE-2018-3831 | elasticsearch-5.6.2.jar |
CVE-2019-7611 | elasticsearch-5.6.2.jar |
CVE-2019-7611 | elasticsearch-5.6.8.jar |
CVE-2020-7020 | elasticsearch-5.6.2.jar |
CVE-2019-7614 | elasticsearch-5.6.8.jar |
CVE-2023-31418 | elasticsearch-5.6.2.jar |
Base branch total remaining vulnerabilities: 457
Base branch commit: acf9a0620c1a37cee4f2896d71e1c3731c5c7b06
Total libraries scanned: 376
Scan token: 37697eafbf8e44db87ddbeccf12ff9c8