Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

[Snyk] Upgrade org.apache.mahout:mahout-mr from 0.10.0 to 0.13.0 #6

Open
wants to merge 1 commit into
base: master
Choose a base branch
from

Conversation

snyk-bot
Copy link
Contributor

Snyk has created this PR to upgrade org.apache.mahout:mahout-mr from 0.10.0 to 0.13.0.

ℹ️ Keep your dependencies up-to-date. This makes it easier to fix existing vulnerabilities and to more quickly identify and fix newly disclosed vulnerabilities when they affect your project.


  • The recommended version is 9 versions ahead of your current version.
  • The recommended version was released 4 years ago, on 2017-04-15.

The recommended version fixes:

Severity Issue PriorityScore (*) Exploit Maturity
Authentication Bypass
SNYK-JAVA-ORGAPACHEZOOKEEPER-32301
589/1000
Why? Has a fix available, CVSS 7.5
No Known Exploit
Information Exposure
SNYK-JAVA-ORGAPACHEHADOOP-32124
589/1000
Why? Has a fix available, CVSS 7.5
No Known Exploit
Improper Input Validation
SNYK-JAVA-ORGAPACHEHADOOP-31400
589/1000
Why? Has a fix available, CVSS 7.5
No Known Exploit
Cryptographic Issues
SNYK-JAVA-ORGAPACHEHADOOP-30630
589/1000
Why? Has a fix available, CVSS 7.5
No Known Exploit
Information Exposure
SNYK-JAVA-ORGAPACHEHADOOP-30627
589/1000
Why? Has a fix available, CVSS 7.5
No Known Exploit
Deserialization of Untrusted Data
SNYK-JAVA-LOG4J-572732
589/1000
Why? Has a fix available, CVSS 7.5
Proof of Concept
Information Exposure
SNYK-JAVA-IONETTY-30430
589/1000
Why? Has a fix available, CVSS 7.5
No Known Exploit
Denial of Service (DoS)
SNYK-JAVA-COMTHOUGHTWORKSXSTREAM-31394
589/1000
Why? Has a fix available, CVSS 7.5
No Known Exploit
XML External Entity (XXE) Injection
SNYK-JAVA-COMTHOUGHTWORKSXSTREAM-30385
589/1000
Why? Has a fix available, CVSS 7.5
No Known Exploit
Deserialization of Untrusted Data
SNYK-JAVA-COMTHOUGHTWORKSXSTREAM-1088337
589/1000
Why? Has a fix available, CVSS 7.5
Proof of Concept
Deserialization of Untrusted Data
SNYK-JAVA-COMTHOUGHTWORKSXSTREAM-1088331
589/1000
Why? Has a fix available, CVSS 7.5
Proof of Concept
Deserialization of Untrusted Data
SNYK-JAVA-COMTHOUGHTWORKSXSTREAM-1040458
589/1000
Why? Has a fix available, CVSS 7.5
Proof of Concept
Deserialization of Untrusted Data
SNYK-JAVA-COMMONSCOLLECTIONS-30078
589/1000
Why? Has a fix available, CVSS 7.5
Mature
Integer Overflow
SNYK-JAVA-COMGOOGLEPROTOBUF-173761
589/1000
Why? Has a fix available, CVSS 7.5
No Known Exploit
XML External Entity (XXE) Injection
SNYK-JAVA-ORGCODEHAUSJACKSON-534878
589/1000
Why? Has a fix available, CVSS 7.5
No Known Exploit
Insufficiently Protected Credentials
SNYK-JAVA-ORGAPACHEZOOKEEPER-31035
589/1000
Why? Has a fix available, CVSS 7.5
No Known Exploit
Access Control Bypass
SNYK-JAVA-ORGAPACHEZOOKEEPER-174781
589/1000
Why? Has a fix available, CVSS 7.5
Proof of Concept
Directory Traversal
SNYK-JAVA-ORGAPACHEHTTPCOMPONENTS-31517
589/1000
Why? Has a fix available, CVSS 7.5
No Known Exploit
Man-in-the-Middle (MitM)
SNYK-JAVA-ORGAPACHEHTTPCOMPONENTS-30646
589/1000
Why? Has a fix available, CVSS 7.5
No Known Exploit
Improper Input Validation
SNYK-JAVA-ORGAPACHEHTTPCOMPONENTS-1048058
589/1000
Why? Has a fix available, CVSS 7.5
No Known Exploit
Cross-site Scripting (XSS)
SNYK-JAVA-ORGAPACHEHADOOP-31414
589/1000
Why? Has a fix available, CVSS 7.5
No Known Exploit
Information Exposure
SNYK-JAVA-ORGAPACHEHADOOP-30631
589/1000
Why? Has a fix available, CVSS 7.5
No Known Exploit
Information Exposure
SNYK-JAVA-ORGAPACHEHADOOP-461004
589/1000
Why? Has a fix available, CVSS 7.5
No Known Exploit
Cross-site Request Forgery (CSRF)
SNYK-JAVA-ORGAPACHEHADOOP-31587
589/1000
Why? Has a fix available, CVSS 7.5
No Known Exploit
Information Exposure
SNYK-JAVA-ORGAPACHEHADOOP-174575
589/1000
Why? Has a fix available, CVSS 7.5
No Known Exploit
Denial of Service (DoS)
SNYK-JAVA-ORGAPACHECOMMONS-32473
589/1000
Why? Has a fix available, CVSS 7.5
No Known Exploit
HTTP Request Smuggling
SNYK-JAVA-IONETTY-473694
589/1000
Why? Has a fix available, CVSS 7.5
No Known Exploit
Insecure XML deserialization
SNYK-JAVA-COMTHOUGHTWORKSXSTREAM-460764
589/1000
Why? Has a fix available, CVSS 7.5
Proof of Concept
Deserialization of Untrusted Data
SNYK-JAVA-COMTHOUGHTWORKSXSTREAM-1294540
589/1000
Why? Has a fix available, CVSS 7.5
Proof of Concept
Deserialization of Untrusted Data
SNYK-JAVA-COMTHOUGHTWORKSXSTREAM-1088338
589/1000
Why? Has a fix available, CVSS 7.5
Proof of Concept
Deserialization of Untrusted Data
SNYK-JAVA-COMTHOUGHTWORKSXSTREAM-1088336
589/1000
Why? Has a fix available, CVSS 7.5
Proof of Concept
Deserialization of Untrusted Data
SNYK-JAVA-COMTHOUGHTWORKSXSTREAM-1088335
589/1000
Why? Has a fix available, CVSS 7.5
Proof of Concept
Deserialization of Untrusted Data
SNYK-JAVA-COMTHOUGHTWORKSXSTREAM-1088334
589/1000
Why? Has a fix available, CVSS 7.5
Proof of Concept
Deserialization of Untrusted Data
SNYK-JAVA-COMTHOUGHTWORKSXSTREAM-1088333
589/1000
Why? Has a fix available, CVSS 7.5
Proof of Concept
Deserialization of Untrusted Data
SNYK-JAVA-COMTHOUGHTWORKSXSTREAM-1088332
589/1000
Why? Has a fix available, CVSS 7.5
Proof of Concept
Deserialization of Untrusted Data
SNYK-JAVA-COMTHOUGHTWORKSXSTREAM-1088330
589/1000
Why? Has a fix available, CVSS 7.5
Proof of Concept
Deserialization of Untrusted Data
SNYK-JAVA-COMTHOUGHTWORKSXSTREAM-1088329
589/1000
Why? Has a fix available, CVSS 7.5
Proof of Concept
Deserialization of Untrusted Data
SNYK-JAVA-COMTHOUGHTWORKSXSTREAM-1088328
589/1000
Why? Has a fix available, CVSS 7.5
Proof of Concept
Server-Side Request Forgery (SSRF)
SNYK-JAVA-COMTHOUGHTWORKSXSTREAM-1051967
589/1000
Why? Has a fix available, CVSS 7.5
Mature
Arbitrary File Deletion
SNYK-JAVA-COMTHOUGHTWORKSXSTREAM-1051966
589/1000
Why? Has a fix available, CVSS 7.5
Proof of Concept
Directory Traversal
SNYK-JAVA-COMMONSIO-1277109
589/1000
Why? Has a fix available, CVSS 7.5
No Known Exploit
Man-in-the-Middle (MitM)
SNYK-JAVA-COMMONSHTTPCLIENT-31660
589/1000
Why? Has a fix available, CVSS 7.5
No Known Exploit
Improper Certificate Validation
SNYK-JAVA-COMMONSHTTPCLIENT-30083
589/1000
Why? Has a fix available, CVSS 7.5
No Known Exploit
Deserialization of Untrusted Data
SNYK-JAVA-COMMONSCOLLECTIONS-472711
589/1000
Why? Has a fix available, CVSS 7.5
Proof of Concept
Deserialization of Untrusted Data
SNYK-JAVA-COMGOOGLEGUAVA-32236
589/1000
Why? Has a fix available, CVSS 7.5
No Known Exploit
Information Disclosure
SNYK-JAVA-COMGOOGLEGUAVA-1015415
589/1000
Why? Has a fix available, CVSS 7.5
No Known Exploit
Man-in-the-Middle (MitM)
SNYK-JAVA-LOG4J-1300176
589/1000
Why? Has a fix available, CVSS 7.5
No Known Exploit
Information Exposure
SNYK-JAVA-COMMONSCODEC-561518
589/1000
Why? Has a fix available, CVSS 7.5
No Known Exploit

(*) Note that the real score may have changed since the PR was raised.


Note: You are seeing this because you or someone else with access to this repository has authorized Snyk to open upgrade PRs.

For more information:

🧐 View latest project report

🛠 Adjust upgrade PR settings

🔕 Ignore this dependency or unsubscribe from future upgrade PRs

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
None yet
Projects
None yet
Development

Successfully merging this pull request may close these issues.

None yet

1 participant