Skip to content

Conversation

@mend-for-github-com
Copy link

@mend-for-github-com mend-for-github-com bot commented Aug 5, 2025

This PR contains the following updates:

Package Type Update Change
com.sparkjava:spark-core (source) dependencies minor 2.6.0 -> 2.9.4

By merging this PR, the below vulnerabilities will be automatically resolved:

Severity CVSS Score Vulnerability Reachability
Critical Critical 9.8 CVE-2017-7657
Critical Critical 9.8 CVE-2017-7657
Critical Critical 9.8 CVE-2017-7658
High High 8.8 CVE-2018-12538
High High 7.5 CVE-2017-7656
High High 7.5 CVE-2017-7656
High High 7.5 CVE-2021-28165
High High 7.0 CVE-2020-27216
Medium Medium 6.1 CVE-2019-10241
Medium Medium 6.1 CVE-2019-10241
Medium Medium 6.1 CVE-2019-10241
Medium Medium 5.3 CVE-2018-12536
Medium Medium 5.3 CVE-2018-12536
Medium Medium 5.3 CVE-2018-12536
Medium Medium 5.3 CVE-2021-28169
Medium Medium 5.3 CVE-2021-28169
Low Low 2.9 CVE-2021-34428
Low Low 2.7 CVE-2022-2047
Low Low 2.7 CVE-2022-2047
Low Low 2.7 CVE-2022-2047

Release Notes

perwendel/spark (com.sparkjava:spark-core)

v2.9.3

Compare Source

v2.9.2

Compare Source

v2.9.1

Compare Source

v2.7.2

Compare Source

v2.7.1

Compare Source

v2.7.0

Compare Source


  • If you want to rebase/retry this PR, check this box

@mend-for-github-com mend-for-github-com bot added the security fix Security fix generated by Mend label Aug 5, 2025
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

security fix Security fix generated by Mend

Projects

None yet

Development

Successfully merging this pull request may close these issues.

1 participant