Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

Update dependency com.google.guava:guava to v32 #28

Open
wants to merge 1 commit into
base: master
Choose a base branch
from

Conversation

mend-for-github-com[bot]
Copy link

@mend-for-github-com mend-for-github-com bot commented Aug 14, 2023

This PR contains the following updates:

Package Change Age Adoption Passing Confidence
com.google.guava:guava 18.0 -> 32.0.1-android age adoption passing confidence

By merging this PR, the below vulnerabilities will be automatically resolved:

Severity CVSS Score CVE Reachability
High High 7.1 CVE-2023-2976

Reachable

Medium Medium 5.9 CVE-2018-10237

Unreachable

Low Low 3.3 CVE-2020-8908

Reachable


Release Notes

google/guava (com.google.guava:guava)

v23.0: 23.0

Final Guava 23.0 release.

v22.0: 22.0

Compare Source

Final Guava 22.0 release.

v21.0: 21.0

Compare Source

Final Guava 21.0 release.

This release requires Java 8.

v20.0: 20.0

Compare Source

Final Guava 20.0 release.

v19.0

Compare Source


  • If you want to rebase/retry this PR, check this box

@mend-for-github-com mend-for-github-com bot added the security fix Security fix generated by Mend label Aug 14, 2023
@mend-for-github-com mend-for-github-com bot force-pushed the whitesource-remediate/major-guava-monorepo branch from b1ad091 to 2cf2044 Compare October 6, 2023 02:08
@mend-for-github-com mend-for-github-com bot force-pushed the whitesource-remediate/major-guava-monorepo branch from 2cf2044 to 8f607f2 Compare October 11, 2023 02:06
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
security fix Security fix generated by Mend
Projects
None yet
Development

Successfully merging this pull request may close these issues.

None yet

0 participants