2.4.1 version #3396
2.4.1 version #3396
Security Report
3 new vulnerabilities were introduced in this branch.
❌ New vulnerabilities:
CVE | Severity | CVSS Score | Vulnerable Library | Suggested Fix | Issue |
---|---|---|---|---|---|
CVE-2023-43642Path to dependency file: /data-prepper-plugins/build.gradle Path to vulnerable library: /home/wss-scanner/.gradle/caches/modules-2/files-2.1/org.xerial.snappy/snappy-java/1.1.10.3/4548ee2aac847998146e8d4a3176f7bcc766a00/snappy-java-1.1.10.3.jar,/home/wss-scanner/.gradle/caches/modules-2/files-2.1/org.xerial.snappy/snappy-java/1.1.10.3/4548ee2aac847998146e8d4a3176f7bcc766a00/snappy-java-1.1.10.3.jar,/home/wss-scanner/.gradle/caches/modules-2/files-2.1/org.xerial.snappy/snappy-java/1.1.10.3/4548ee2aac847998146e8d4a3176f7bcc766a00/snappy-java-1.1.10.3.jar,/home/wss-scanner/.gradle/caches/modules-2/files-2.1/org.xerial.snappy/snappy-java/1.1.10.3/4548ee2aac847998146e8d4a3176f7bcc766a00/snappy-java-1.1.10.3.jar,/home/wss-scanner/.gradle/caches/modules-2/files-2.1/org.xerial.snappy/snappy-java/1.1.10.3/4548ee2aac847998146e8d4a3176f7bcc766a00/snappy-java-1.1.10.3.jar,/home/wss-scanner/.gradle/caches/modules-2/files-2.1/org.xerial.snappy/snappy-java/1.1.10.3/4548ee2aac847998146e8d4a3176f7bcc766a00/snappy-java-1.1.10.3.jar,/home/wss-scanner/.gradle/caches/modules-2/files-2.1/org.xerial.snappy/snappy-java/1.1.10.3/4548ee2aac847998146e8d4a3176f7bcc766a00/snappy-java-1.1.10.3.jar,/home/wss-scanner/.gradle/caches/modules-2/files-2.1/org.xerial.snappy/snappy-java/1.1.10.3/4548ee2aac847998146e8d4a3176f7bcc766a00/snappy-java-1.1.10.3.jar,/home/wss-scanner/.gradle/caches/modules-2/files-2.1/org.xerial.snappy/snappy-java/1.1.10.3/4548ee2aac847998146e8d4a3176f7bcc766a00/snappy-java-1.1.10.3.jar,/home/wss-scanner/.gradle/caches/modules-2/files-2.1/org.xerial.snappy/snappy-java/1.1.10.3/4548ee2aac847998146e8d4a3176f7bcc766a00/snappy-java-1.1.10.3.jar,/home/wss-scanner/.gradle/caches/modules-2/files-2.1/org.xerial.snappy/snappy-java/1.1.10.3/4548ee2aac847998146e8d4a3176f7bcc766a00/snappy-java-1.1.10.3.jar,/home/wss-scanner/.gradle/caches/modules-2/files-2.1/org.xerial.snappy/snappy-java/1.1.10.3/4548ee2aac847998146e8d4a3176f7bcc766a00/snappy-java-1.1.10.3.jar,/home/wss-scanner/.gradle/caches/modules-2/files-2.1/org.xerial.snappy/snappy-java/1.1.10.3/4548ee2aac847998146e8d4a3176f7bcc766a00/snappy-java-1.1.10.3.jar,/home/wss-scanner/.gradle/caches/modules-2/files-2.1/org.xerial.snappy/snappy-java/1.1.10.3/4548ee2aac847998146e8d4a3176f7bcc766a00/snappy-java-1.1.10.3.jar,/home/wss-scanner/.gradle/caches/modules-2/files-2.1/org.xerial.snappy/snappy-java/1.1.10.3/4548ee2aac847998146e8d4a3176f7bcc766a00/snappy-java-1.1.10.3.jar,/home/wss-scanner/.gradle/caches/modules-2/files-2.1/org.xerial.snappy/snappy-java/1.1.10.3/4548ee2aac847998146e8d4a3176f7bcc766a00/snappy-java-1.1.10.3.jar,/home/wss-scanner/.gradle/caches/modules-2/files-2.1/org.xerial.snappy/snappy-java/1.1.10.3/4548ee2aac847998146e8d4a3176f7bcc766a00/snappy-java-1.1.10.3.jar,/home/wss-scanner/.gradle/caches/modules-2/files-2.1/org.xerial.snappy/snappy-java/1.1.10.3/4548ee2aac847998146e8d4a3176f7bcc766a00/snappy-java-1.1.10.3.jar,/home/wss-scanner/.gradle/caches/modules-2/files-2.1/org.xerial.snappy/snappy-java/1.1.10.3/4548ee2aac847998146e8d4a3176f7bcc766a00/snappy-java-1.1.10.3.jar,/home/wss-scanner/.gradle/caches/modules-2/files-2.1/org.xerial.snappy/snappy-java/1.1.10.3/4548ee2aac847998146e8d4a3176f7bcc766a00/snappy-java-1.1.10.3.jar,/home/wss-scanner/.gradle/caches/modules-2/files-2.1/org.xerial.snappy/snappy-java/1.1.10.3/4548ee2aac847998146e8d4a3176f7bcc766a00/snappy-java-1.1.10.3.jar,/home/wss-scanner/.gradle/caches/modules-2/files-2.1/org.xerial.snappy/snappy-java/1.1.10.3/4548ee2aac847998146e8d4a3176f7bcc766a00/snappy-java-1.1.10.3.jar,/home/wss-scanner/.gradle/caches/modules-2/files-2.1/org.xerial.snappy/snappy-java/1.1.10.3/4548ee2aac847998146e8d4a3176f7bcc766a00/snappy-java-1.1.10.3.jar,/home/wss-scanner/.gradle/caches/modules-2/files-2.1/org.xerial.snappy/snappy-java/1.1.10.3/4548ee2aac847998146e8d4a3176f7bcc766a00/snappy-java-1.1.10.3.jar,/home/wss-scanner/.gradle/caches/modules-2/files-2.1/org.xerial.snappy/snappy-java/1.1.10.3/4548ee2aac847998146e8d4a3176f7bcc766a00/snappy-java-1.1.10.3.jar,/home/wss-scanner/.gradle/caches/modules-2/files-2.1/org.xerial.snappy/snappy-java/1.1.10.3/4548ee2aac847998146e8d4a3176f7bcc766a00/snappy-java-1.1.10.3.jar,/home/wss-scanner/.gradle/caches/modules-2/files-2.1/org.xerial.snappy/snappy-java/1.1.10.3/4548ee2aac847998146e8d4a3176f7bcc766a00/snappy-java-1.1.10.3.jar,/home/wss-scanner/.gradle/caches/modules-2/files-2.1/org.xerial.snappy/snappy-java/1.1.10.3/4548ee2aac847998146e8d4a3176f7bcc766a00/snappy-java-1.1.10.3.jar,/home/wss-scanner/.gradle/caches/modules-2/files-2.1/org.xerial.snappy/snappy-java/1.1.10.3/4548ee2aac847998146e8d4a3176f7bcc766a00/snappy-java-1.1.10.3.jar,/home/wss-scanner/.gradle/caches/modules-2/files-2.1/org.xerial.snappy/snappy-java/1.1.10.3/4548ee2aac847998146e8d4a3176f7bcc766a00/snappy-java-1.1.10.3.jar,/home/wss-scanner/.gradle/caches/modules-2/files-2.1/org.xerial.snappy/snappy-java/1.1.10.3/4548ee2aac847998146e8d4a3176f7bcc766a00/snappy-java-1.1.10.3.jar,/home/wss-scanner/.gradle/caches/modules-2/files-2.1/org.xerial.snappy/snappy-java/1.1.10.3/4548ee2aac847998146e8d4a3176f7bcc766a00/snappy-java-1.1.10.3.jar,/home/wss-scanner/.gradle/caches/modules-2/files-2.1/org.xerial.snappy/snappy-java/1.1.10.3/4548ee2aac847998146e8d4a3176f7bcc766a00/snappy-java-1.1.10.3.jar,/home/wss-scanner/.gradle/caches/modules-2/files-2.1/org.xerial.snappy/snappy-java/1.1.10.3/4548ee2aac847998146e8d4a3176f7bcc766a00/snappy-java-1.1.10.3.jar,/home/wss-scanner/.gradle/caches/modules-2/files-2.1/org.xerial.snappy/snappy-java/1.1.10.3/4548ee2aac847998146e8d4a3176f7bcc766a00/snappy-java-1.1.10.3.jar,/home/wss-scanner/.gradle/caches/modules-2/files-2.1/org.xerial.snappy/snappy-java/1.1.10.3/4548ee2aac847998146e8d4a3176f7bcc766a00/snappy-java-1.1.10.3.jar,/home/wss-scanner/.gradle/caches/modules-2/files-2.1/org.xerial.snappy/snappy-java/1.1.10.3/4548ee2aac847998146e8d4a3176f7bcc766a00/snappy-java-1.1.10.3.jar,/home/wss-scanner/.gradle/caches/modules-2/files-2.1/org.xerial.snappy/snappy-java/1.1.10.3/4548ee2aac847998146e8d4a3176f7bcc766a00/snappy-java-1.1.10.3.jar,/home/wss-scanner/.gradle/caches/modules-2/files-2.1/org.xerial.snappy/snappy-java/1.1.10.3/4548ee2aac847998146e8d4a3176f7bcc766a00/snappy-java-1.1.10.3.jar,/home/wss-scanner/.gradle/caches/modules-2/files-2.1/org.xerial.snappy/snappy-java/1.1.10.3/4548ee2aac847998146e8d4a3176f7bcc766a00/snappy-java-1.1.10.3.jar Dependency Hierarchy: -> ❌ snappy-java-1.1.10.3.jar (Vulnerable Library) |
High | 7.5 | snappy-java-1.1.10.3.jar | Upgrade to version: org.xerial.snappy:snappy-java:1.1.10.4 | None |
CVE-2023-43642Path to dependency file: /data-prepper-plugins/s3-sink/build.gradle Path to vulnerable library: /home/wss-scanner/.gradle/caches/modules-2/files-2.1/org.xerial.snappy/snappy-java/1.1.10.1/4a1e1a22cba39145dfa20f2fef4e1ca38c8e02a1/snappy-java-1.1.10.1.jar,/home/wss-scanner/.gradle/caches/modules-2/files-2.1/org.xerial.snappy/snappy-java/1.1.10.1/4a1e1a22cba39145dfa20f2fef4e1ca38c8e02a1/snappy-java-1.1.10.1.jar,/home/wss-scanner/.gradle/caches/modules-2/files-2.1/org.xerial.snappy/snappy-java/1.1.10.1/4a1e1a22cba39145dfa20f2fef4e1ca38c8e02a1/snappy-java-1.1.10.1.jar,/home/wss-scanner/.gradle/caches/modules-2/files-2.1/org.xerial.snappy/snappy-java/1.1.10.1/4a1e1a22cba39145dfa20f2fef4e1ca38c8e02a1/snappy-java-1.1.10.1.jar Dependency Hierarchy: -> ❌ snappy-java-1.1.10.1.jar (Vulnerable Library) |
High | 7.5 | snappy-java-1.1.10.1.jar | Upgrade to version: org.xerial.snappy:snappy-java:1.1.10.4 | None |
CVE-2022-25883Dependency Hierarchy: -> aws-cdk-lib-2.80.0.tgz (Root Library) -> ❌ semver-7.5.1.tgz (Vulnerable Library) |
High | 7.5 | semver-7.5.1.tgz | Upgrade to version: semver - 5.7.2,6.3.1,7.5.2;org.webjars.npm:semver:7.5.2 | #2918 |
Base branch total remaining vulnerabilities: 4
Base branch commit: 5fdf95fa368cbf6a51aef44135e8e909d9fc58f9
Total libraries scanned: 993
Scan token: dcaf972407cf4aca9e2844c0c89a763b