Skip to content

Update dependency org.pac4j:pac4j-saml to v5

818081e
Select commit
Loading
Failed to load commit list.
Open

Update dependency org.pac4j:pac4j-saml to v5 (main) #251

Update dependency org.pac4j:pac4j-saml to v5
818081e
Select commit
Loading
Failed to load commit list.
Mend for GitHub.com / WhiteSource Security Check succeeded May 26, 2026 in 3m 14s

Security Report

❗️Scan Incomplete: The scan completed with partial failure. The integration encountered issues with one or more projects in this repository, preventing their scan. The errors occurred in the following package managers: gradle,sbt,php. Consequently, there may be gaps in the coverage of open-source dependencies used in the repository.

Scan Details Report

gradle

/tmp/ws-scm/comms-router/test/demo-helper/play-helper/build.gradle

Step Level Description Details
Preparing the project for scan ⚠Warn One or more of the installations failed failed running mend init script (mendDeps):
NOTE: Picked up JDK_JAVA_OPTIONS: --add-opens java.base/java.util=ALL-UNNAMED --add-opens java.base/sun.reflect.generics.reflectiveObjects=ALL-UNNAMED

FAILURE: Build failed with an exception.

* Where:
Build file '/tmp/ws-scm/comms-router/test/demo-helper/play-helper/build.gradle' line: 2

* What went wrong:
Plugin [id: 'play'] was not found in any o...

https://vonagecc.jfrog.io/artifactory

Step Level Description Details
Checking registry connectivity ⚠Warn Problem occurred while connecting to the private registry host server, private registry returned 401 - Unauthorized {"errors":[{"code":"UNAUTHORIZED","message":"Invalid token, parse"}]}

https://vonagecc.jfrog.io/artifactory/maven

Step Level Description Details
Checking registry connectivity ⚠Warn Problem occurred while connecting to the private registry host server, private registry returned 401 - Unauthorized {"errors":[{"code":"UNAUTHORIZED","message":"Invalid token, parse"}]}

✔️ 👍 You have successfully remediated 19 vulnerabilities in this branch:
Vulnerability Vulnerable Library
CVE-2024-38828 spring-core-4.3.7.RELEASE.jar
CVE-2025-48924 commons-lang-2.4.jar
CVE-2018-1272 spring-core-4.3.7.RELEASE.jar
CVE-2019-12400 xmlsec-2.0.5.jar
CVE-2018-15756 spring-core-4.3.7.RELEASE.jar
CVE-2022-34169 xalan-2.7.2.jar
CVE-2018-1199 spring-core-4.3.7.RELEASE.jar
CVE-2020-13956 httpclient-4.3.6.jar
CVE-2019-10755 pac4j-saml-2.3.1.jar
WS-2019-0379 commons-codec-1.10.jar
CVE-2022-22970 spring-core-4.3.7.RELEASE.jar
CVE-2023-44483 xmlsec-2.0.5.jar
WS-2017-3734 httpclient-4.3.6.jar
CVE-2024-38820 spring-core-4.3.7.RELEASE.jar
CVE-2020-7226 cryptacular-1.1.0.jar
CVE-2025-41249 spring-core-4.3.7.RELEASE.jar
CVE-2018-11040 spring-core-4.3.7.RELEASE.jar
CVE-2021-40690 xmlsec-2.0.5.jar
CVE-2020-13936 velocity-1.7.jar

Base branch total remaining vulnerabilities: 197
Base branch commit: 4e5656db54be4b22481fe3774c2caeba51bac190


Total libraries scanned: 203

Scan token: f8b3757429d341ac8a32117287d4850d