Skip to content

[Nullify Dependencies] updating vulnerable package junit:junit from 4.11 to 4.13.1#1

Open
nalbion-nullify[bot] wants to merge 1 commit intomasterfrom
nullify/dependencies-840134
Open

[Nullify Dependencies] updating vulnerable package junit:junit from 4.11 to 4.13.1#1
nalbion-nullify[bot] wants to merge 1 commit intomasterfrom
nullify/dependencies-840134

Conversation

@nalbion-nullify
Copy link
Copy Markdown

Package Vulnerability Fix Summary

Severity Threshold: 🔵 MEDIUM

🔴 CRITICAL 🟡 HIGH 🔵 MEDIUM ⚪ LOW
0 0 1 0

ID: 01HVMXXHN51JBD9QNXCFJM1VK5 Package: junit:junit Version: 4.11 Vulnerabilities: 1 Type: Direct

CVE Severity Issue Current Version Introduced in Fixed in Priority
CVE-2020-15250 MEDIUM TemporaryFolder on unix-like systems does not limit access to created files 4.11 4.7 4.13.1 Negligible

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

0 participants