add per document alerting in bucket level monitor for security analytics #1081
Mend for GitHub.com / WhiteSource Security Check
failed
Aug 8, 2023 in 2m 12s
Security Report
1 new vulnerabilities were introduced in this branch.
❌ New vulnerabilities:
CVE | Severity | CVSS Score | Vulnerable Library | Suggested Fix | Issue |
---|---|---|---|---|---|
CVE-2023-2976Path to dependency file: /build.gradle Path to vulnerable library: /home/wss-scanner/.gradle/caches/modules-2/files-2.1/com.google.guava/guava/30.0-jre/8ddbc8769f73309fe09b54c5951163f10b0d89fa/guava-30.0-jre.jar,/home/wss-scanner/.gradle/caches/modules-2/files-2.1/com.google.guava/guava/30.0-jre/8ddbc8769f73309fe09b54c5951163f10b0d89fa/guava-30.0-jre.jar Dependency Hierarchy: -> google-java-format-1.10.0.jar (Root Library) -> ❌ guava-30.0-jre.jar (Vulnerable Library) |
High | 7.1 | guava-30.0-jre.jar | Upgrade to version: com.google.guava:guava:32.0.0-jre,com.google.guava:guava:32.0.0-android | None |
Base branch total remaining vulnerabilities: 0
Base branch commit: 5fbb18a459f8649ee4f7fa84db9583b8df9576f6
Total libraries scanned: 165
Scan token: c050959b39654015a57705a91c3d8146
Loading