Your dependencies cross-checked against the OSV vulnerability database.
-
Serious GHSA-4hvc-qwr2-f8rv Redisson vulnerable to Deserialization of Untrusted Data
/workdirs/scan-12f30776-00fd-4064-ac97-e548c7b55e3c/opentracing-redis-redisson/pom.xml
A package you depend on has a known security hole (CVE-2023-42809). Fix: Update that package to its patched version.
-
Worth fixing GHSA-269g-pwp5-87pp TemporaryFolder on unix-like systems does not limit access to created files
/workdirs/scan-12f30776-00fd-4064-ac97-e548c7b55e3c/opentracing-redis-common/pom.xml
A package you depend on has a known security hole (CVE-2020-15250). Fix: Update that package to its patched version.
-
Worth fixing GHSA-7g45-4rm6-3mm3 Guava vulnerable to insecure use of temporary directory
/workdirs/scan-12f30776-00fd-4064-ac97-e548c7b55e3c/opentracing-redis-common/pom.xml
A package you depend on has a known security hole (CVE-2023-2976). Fix: Update that package to its patched version.
-
Worth fixing GHSA-mvr2-9pj6-7w5j Denial of Service in Google Guava
/workdirs/scan-12f30776-00fd-4064-ac97-e548c7b55e3c/opentracing-redis-common/pom.xml
A package you depend on has a known security hole (CVE-2018-10237). Fix: Update that package to its patched version.
-
Worth fixing GHSA-78wr-2p64-hpwj Apache Commons IO: Possible denial of service attack on untrusted input to XmlStreamReader
/workdirs/scan-12f30776-00fd-4064-ac97-e548c7b55e3c/opentracing-redis-common/pom.xml
A package you depend on has a known security hole (CVE-2024-47554). Fix: Update that package to its patched version.
-
Worth fixing GHSA-gwrp-pvrq-jmwv Path Traversal and Improper Input Validation in Apache Commons IO
/workdirs/scan-12f30776-00fd-4064-ac97-e548c7b55e3c/opentracing-redis-common/pom.xml
A package you depend on has a known security hole (CVE-2021-29425). Fix: Update that package to its patched version.
-
Worth fixing GHSA-269g-pwp5-87pp TemporaryFolder on unix-like systems does not limit access to created files
/workdirs/scan-12f30776-00fd-4064-ac97-e548c7b55e3c/opentracing-redis-jedis/pom.xml
A package you depend on has a known security hole (CVE-2020-15250). Fix: Update that package to its patched version.
-
Worth fixing GHSA-269g-pwp5-87pp TemporaryFolder on unix-like systems does not limit access to created files
/workdirs/scan-12f30776-00fd-4064-ac97-e548c7b55e3c/opentracing-redis-jedis3/pom.xml
A package you depend on has a known security hole (CVE-2020-15250). Fix: Update that package to its patched version.
-
Worth fixing GHSA-269g-pwp5-87pp TemporaryFolder on unix-like systems does not limit access to created files
/workdirs/scan-12f30776-00fd-4064-ac97-e548c7b55e3c/opentracing-redis-lettuce-5.0/pom.xml
A package you depend on has a known security hole (CVE-2020-15250). Fix: Update that package to its patched version.
-
Worth fixing GHSA-269g-pwp5-87pp TemporaryFolder on unix-like systems does not limit access to created files
/workdirs/scan-12f30776-00fd-4064-ac97-e548c7b55e3c/opentracing-redis-lettuce-5.1/pom.xml
A package you depend on has a known security hole (CVE-2020-15250). Fix: Update that package to its patched version.
-
Worth fixing GHSA-269g-pwp5-87pp TemporaryFolder on unix-like systems does not limit access to created files
/workdirs/scan-12f30776-00fd-4064-ac97-e548c7b55e3c/opentracing-redis-lettuce-5.2/pom.xml
A package you depend on has a known security hole (CVE-2020-15250). Fix: Update that package to its patched version.
-
Worth fixing GHSA-269g-pwp5-87pp TemporaryFolder on unix-like systems does not limit access to created files
/workdirs/scan-12f30776-00fd-4064-ac97-e548c7b55e3c/opentracing-redis-redisson/pom.xml
A package you depend on has a known security hole (CVE-2020-15250). Fix: Update that package to its patched version.
-
Worth fixing GHSA-269g-pwp5-87pp TemporaryFolder on unix-like systems does not limit access to created files
/workdirs/scan-12f30776-00fd-4064-ac97-e548c7b55e3c/opentracing-redis-spring-data/pom.xml
A package you depend on has a known security hole (CVE-2020-15250). Fix: Update that package to its patched version.
-
Worth fixing GHSA-269g-pwp5-87pp TemporaryFolder on unix-like systems does not limit access to created files
/workdirs/scan-12f30776-00fd-4064-ac97-e548c7b55e3c/opentracing-redis-spring-data2/pom.xml
A package you depend on has a known security hole (CVE-2020-15250). Fix: Update that package to its patched version.
-
Worth fixing GHSA-269g-pwp5-87pp TemporaryFolder on unix-like systems does not limit access to created files
/workdirs/scan-12f30776-00fd-4064-ac97-e548c7b55e3c/pom.xml
A package you depend on has a known security hole (CVE-2020-15250). Fix: Update that package to its patched version.
-
Minor GHSA-5mg8-w23w-74h3 Information Disclosure in Guava
/workdirs/scan-12f30776-00fd-4064-ac97-e548c7b55e3c/opentracing-redis-common/pom.xml
A package you depend on has a known security hole (CVE-2020-8908). Fix: Update that package to its patched version.