[Snyk] Security upgrade org.apache.struts:struts2-core from 2.3.20 to 6.4.0
Snyk has created this Merge Request to fix 2 vulnerabilities in the maven dependencies of this project.
Snyk changed the following file(s):
pom.xml
Vulnerabilities that will be fixed with an upgrade:
| Issue | Score | Upgrade | |
|---|---|---|---|
| Directory Traversal SNYK-JAVA-COMMONSIO-1277109 |
86 | org.apache.struts:struts2-core: 2.3.20 -> 6.4.0 Major version upgrade No Path Found Mature
|
|
| Uncontrolled Resource Consumption ('Resource Exhaustion') SNYK-JAVA-COMMONSIO-8161190 |
49 | org.apache.struts:struts2-core: 2.3.20 -> 6.4.0 Major version upgrade No Path Found No Known Exploit
|
Important
- Check the changes in this PR to ensure they won't cause issues with your project.
- Max score is 1000. Note that the real score may have changed since the PR was raised.
- This PR was automatically created by Snyk using the credentials of a real user.
Note: You are seeing this because you or someone else with access to this repository has authorized Snyk to open fix PRs.
For more information:
Learn how to fix vulnerabilities with free interactive lessons: