Skip to content

Conversation

@mend-for-github-com
Copy link

@mend-for-github-com mend-for-github-com bot commented Feb 24, 2025

This PR contains the following updates:

Package Type Update Change
org.apache.maven:maven-core (source) compile minor 3.6.0 -> 3.8.2
org.apache.maven:maven-plugin-api (source) compile minor 3.6.0 -> 3.8.1

By merging this PR, the below issues will be automatically resolved and closed:

Severity CVSS Score Vulnerability GitHub Issue
Critical 9.8 CVE-2022-29599 #17
Critical 9.1 CVE-2021-26291 #23
Medium 5.5 CVE-2023-2976 #16
Medium 4.8 CVE-2021-29425 #18
Medium 4.3 CVE-2024-47554 #24
Low 3.3 CVE-2020-8908 #19

By merging this PR, the below issues will be automatically resolved and closed:

Severity CVSS Score Vulnerability GitHub Issue
Medium 5.3 CVE-2025-48924 #26

Release Notes

apache/maven (org.apache.maven:maven-core)

v3.8.2


  • If you want to rebase/retry this PR, check this box

@mend-for-github-com mend-for-github-com bot added the security fix Security fix generated by WhiteSource label Feb 24, 2025
@mend-for-github-com mend-for-github-com bot changed the title Update dependency org.apache.maven:maven-core to v3.8.2 Update maven-mojo-plugin.version Aug 13, 2025
@mend-for-github-com mend-for-github-com bot force-pushed the whitesource-remediate/maven-mojo-plugin.version branch from 2c5bb75 to 9ae04b9 Compare August 13, 2025 11:14
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

security fix Security fix generated by WhiteSource

Projects

None yet

Development

Successfully merging this pull request may close these issues.

1 participant