Update dependency org.springframework.boot:spring-boot-autoconfigure to v2.5.15 (main) #53
Mend for GitHub.com / WhiteSource Security Check
failed
May 26, 2026 in 1m 35s
Security Report
1 new vulnerabilities were introduced in this branch.
❌ New vulnerabilities:
| Vulnerability | Severity | Exploit Maturity | EPSS | Vulnerable Library | Direct Library | Suggested Fix | Issue | Reachability | |
|---|---|---|---|---|---|---|---|---|---|
CVE-2025-22235Path to dependency file: /nexmo-spring-boot-autoconfigure/pom.xml Path to vulnerable library: /home/wss-scanner/.m2/repository/org/springframework/boot/spring-boot/2.5.15/spring-boot-2.5.15.jar Dependency Hierarchy: -> ❌ spring-boot-2.5.15.jar (Vulnerable Library) |
7.3 | Functional | 0.39% | Direct spring-boot-2.5.15.jar |
spring-boot-2.5.15.jar | https://github.com/spring-projects/spring-boot.git - v3.4.5,https://github.com/spring-projects/spring-boot.git - v3.3.11,org.springframework.boot:spring-boot-actuator-autoconfigure:3.4.5,org.springframework.boot:spring-boot-actuator-autoconfigure:3.3.11 | None |
Base branch total remaining vulnerabilities: 176
Base branch commit: null
Total libraries scanned: 66
Scan token: bd30ef8354da423eb14f59cf30e808b6
Loading