Skip to content

fix(deps): update aws-java-sdk-v2 monorepo to v2.55.1 - #34

Open
renovate-wenisch-tech[bot] wants to merge 1 commit into
mainfrom
renovate/aws-java-sdk-v2-monorepo
Open

renovate-wenisch-tech[bot] wants to merge 1 commit into
mainfrom
renovate/aws-java-sdk-v2-monorepo

Conversation

@renovate-wenisch-tech

@renovate-wenisch-tech renovate-wenisch-tech Bot commented Aug 24, 2026

Copy link
Copy Markdown
Contributor

This PR contains the following updates:

Package Change Age Confidence
software.amazon.awssdk:url-connection-client 2.54.22.55.1 age confidence
software.amazon.awssdk:iam 2.54.22.55.1 age confidence
software.amazon.awssdk:s3 2.54.22.55.1 age confidence

Warning

Some dependencies could not be looked up. Check the Dependency Dashboard for more information.


Configuration

📅 Schedule: (UTC)

  • Branch creation
    • At any time (no schedule defined)
  • Automerge
    • At any time (no schedule defined)

🚦 Automerge: Disabled by config. Please merge this manually once you are satisfied.

Rebasing: Whenever PR becomes conflicted, or you tick the rebase/retry checkbox.

🔕 Ignore: Close this PR and you won't be reminded about these updates again.


  • If you want to rebase/retry this PR, check this box

This PR has been generated by Mend Renovate.

@github-actions

Copy link
Copy Markdown
Contributor

Trivy vulnerability report

Image: ghcr.io/wenisch-tech/s3webui:0.6.26-pr.34.230


Report Summary

┌────────────────────────────────────────────────────────────────┬───────┬─────────────────┐
│                             Target                             │ Type  │ Vulnerabilities │
├────────────────────────────────────────────────────────────────┼───────┼─────────────────┤
│ ghcr.io/wenisch-tech/s3webui:0.6.26-pr.34.230 (wolfi 20230201) │ wolfi │        0        │
├────────────────────────────────────────────────────────────────┼───────┼─────────────────┤
│ app/app.jar                                                    │  jar  │        0        │
└────────────────────────────────────────────────────────────────┴───────┴─────────────────┘
Legend:
- '-': Not scanned
- '0': Clean (no security findings detected)


@renovate-wenisch-tech
renovate-wenisch-tech Bot force-pushed the renovate/aws-java-sdk-v2-monorepo branch from 9557f8f to 8d69edc Compare August 25, 2026 23:04
@renovate-wenisch-tech renovate-wenisch-tech Bot changed the title fix(deps): update aws-java-sdk-v2 monorepo to v2.54.3 fix(deps): update aws-java-sdk-v2 monorepo to v2.54.4 Aug 25, 2026
@github-actions

Copy link
Copy Markdown
Contributor

Trivy vulnerability report

Image: ghcr.io/wenisch-tech/s3webui:0.6.26-pr.34.232


Report Summary

┌────────────────────────────────────────────────────────────────┬───────┬─────────────────┐
│                             Target                             │ Type  │ Vulnerabilities │
├────────────────────────────────────────────────────────────────┼───────┼─────────────────┤
│ ghcr.io/wenisch-tech/s3webui:0.6.26-pr.34.232 (wolfi 20230201) │ wolfi │        0        │
├────────────────────────────────────────────────────────────────┼───────┼─────────────────┤
│ app/app.jar                                                    │  jar  │        0        │
└────────────────────────────────────────────────────────────────┴───────┴─────────────────┘
Legend:
- '-': Not scanned
- '0': Clean (no security findings detected)


@renovate-wenisch-tech renovate-wenisch-tech Bot changed the title fix(deps): update aws-java-sdk-v2 monorepo to v2.54.4 fix(deps): update aws-java-sdk-v2 monorepo to v2.54.5 Aug 26, 2026
@renovate-wenisch-tech
renovate-wenisch-tech Bot force-pushed the renovate/aws-java-sdk-v2-monorepo branch from 8d69edc to 1e957ca Compare August 26, 2026 22:04
@github-actions

Copy link
Copy Markdown
Contributor

Trivy vulnerability report

Image: ghcr.io/wenisch-tech/s3webui:0.6.26-pr.34.234


Report Summary

┌────────────────────────────────────────────────────────────────┬───────┬─────────────────┐
│                             Target                             │ Type  │ Vulnerabilities │
├────────────────────────────────────────────────────────────────┼───────┼─────────────────┤
│ ghcr.io/wenisch-tech/s3webui:0.6.26-pr.34.234 (wolfi 20230201) │ wolfi │        0        │
├────────────────────────────────────────────────────────────────┼───────┼─────────────────┤
│ app/app.jar                                                    │  jar  │        0        │
└────────────────────────────────────────────────────────────────┴───────┴─────────────────┘
Legend:
- '-': Not scanned
- '0': Clean (no security findings detected)


@renovate-wenisch-tech
renovate-wenisch-tech Bot force-pushed the renovate/aws-java-sdk-v2-monorepo branch from 1e957ca to 409f795 Compare August 27, 2026 22:04
@renovate-wenisch-tech renovate-wenisch-tech Bot changed the title fix(deps): update aws-java-sdk-v2 monorepo to v2.54.5 fix(deps): update aws-java-sdk-v2 monorepo to v2.54.6 Aug 27, 2026
@github-actions

Copy link
Copy Markdown
Contributor

Trivy vulnerability report

Image: ghcr.io/wenisch-tech/s3webui:0.6.26-pr.34.236


Report Summary

┌────────────────────────────────────────────────────────────────┬───────┬─────────────────┐
│                             Target                             │ Type  │ Vulnerabilities │
├────────────────────────────────────────────────────────────────┼───────┼─────────────────┤
│ ghcr.io/wenisch-tech/s3webui:0.6.26-pr.34.236 (wolfi 20230201) │ wolfi │        0        │
├────────────────────────────────────────────────────────────────┼───────┼─────────────────┤
│ app/app.jar                                                    │  jar  │        0        │
└────────────────────────────────────────────────────────────────┴───────┴─────────────────┘
Legend:
- '-': Not scanned
- '0': Clean (no security findings detected)


@renovate-wenisch-tech
renovate-wenisch-tech Bot force-pushed the renovate/aws-java-sdk-v2-monorepo branch from 409f795 to 47fc978 Compare August 28, 2026 22:04
@renovate-wenisch-tech renovate-wenisch-tech Bot changed the title fix(deps): update aws-java-sdk-v2 monorepo to v2.54.6 fix(deps): update aws-java-sdk-v2 monorepo to v2.54.7 Aug 28, 2026
@github-actions

Copy link
Copy Markdown
Contributor

Trivy vulnerability report

Image: ghcr.io/wenisch-tech/s3webui:0.6.26-pr.34.238


Report Summary

┌────────────────────────────────────────────────────────────────┬───────┬─────────────────┐
│                             Target                             │ Type  │ Vulnerabilities │
├────────────────────────────────────────────────────────────────┼───────┼─────────────────┤
│ ghcr.io/wenisch-tech/s3webui:0.6.26-pr.34.238 (wolfi 20230201) │ wolfi │        0        │
├────────────────────────────────────────────────────────────────┼───────┼─────────────────┤
│ app/app.jar                                                    │  jar  │        0        │
└────────────────────────────────────────────────────────────────┴───────┴─────────────────┘
Legend:
- '-': Not scanned
- '0': Clean (no security findings detected)


@renovate-wenisch-tech
renovate-wenisch-tech Bot force-pushed the renovate/aws-java-sdk-v2-monorepo branch from 47fc978 to a0d592f Compare August 31, 2026 22:04
@renovate-wenisch-tech renovate-wenisch-tech Bot changed the title fix(deps): update aws-java-sdk-v2 monorepo to v2.54.7 fix(deps): update aws-java-sdk-v2 monorepo to v2.54.8 Aug 31, 2026
@github-actions

Copy link
Copy Markdown
Contributor

Trivy vulnerability report

Image: ghcr.io/wenisch-tech/s3webui:0.6.26-pr.34.240


Report Summary

┌────────────────────────────────────────────────────────────────┬───────┬─────────────────┐
│                             Target                             │ Type  │ Vulnerabilities │
├────────────────────────────────────────────────────────────────┼───────┼─────────────────┤
│ ghcr.io/wenisch-tech/s3webui:0.6.26-pr.34.240 (wolfi 20230201) │ wolfi │        0        │
├────────────────────────────────────────────────────────────────┼───────┼─────────────────┤
│ app/app.jar                                                    │  jar  │        0        │
└────────────────────────────────────────────────────────────────┴───────┴─────────────────┘
Legend:
- '-': Not scanned
- '0': Clean (no security findings detected)


@renovate-wenisch-tech
renovate-wenisch-tech Bot force-pushed the renovate/aws-java-sdk-v2-monorepo branch from a0d592f to 2bf8750 Compare September 1, 2026 02:05
@renovate-wenisch-tech renovate-wenisch-tech Bot changed the title fix(deps): update aws-java-sdk-v2 monorepo to v2.54.8 fix(deps): update aws-java-sdk-v2 monorepo to v2.54.9 Sep 1, 2026
@github-actions

github-actions Bot commented Sep 1, 2026

Copy link
Copy Markdown
Contributor

Trivy vulnerability report

Image: ghcr.io/wenisch-tech/s3webui:0.6.26-pr.34.242


Report Summary

┌────────────────────────────────────────────────────────────────┬───────┬─────────────────┐
│                             Target                             │ Type  │ Vulnerabilities │
├────────────────────────────────────────────────────────────────┼───────┼─────────────────┤
│ ghcr.io/wenisch-tech/s3webui:0.6.26-pr.34.242 (wolfi 20230201) │ wolfi │        0        │
├────────────────────────────────────────────────────────────────┼───────┼─────────────────┤
│ app/app.jar                                                    │  jar  │        0        │
└────────────────────────────────────────────────────────────────┴───────┴─────────────────┘
Legend:
- '-': Not scanned
- '0': Clean (no security findings detected)


@renovate-wenisch-tech
renovate-wenisch-tech Bot force-pushed the renovate/aws-java-sdk-v2-monorepo branch from 2bf8750 to 0564543 Compare September 1, 2026 22:04
@renovate-wenisch-tech renovate-wenisch-tech Bot changed the title fix(deps): update aws-java-sdk-v2 monorepo to v2.54.9 fix(deps): update aws-java-sdk-v2 monorepo to v2.54.10 Sep 1, 2026
@github-actions

github-actions Bot commented Sep 1, 2026

Copy link
Copy Markdown
Contributor

Trivy vulnerability report

Image: ghcr.io/wenisch-tech/s3webui:0.6.27-pr.34.245


Report Summary

┌────────────────────────────────────────────────────────────────┬───────┬─────────────────┐
│                             Target                             │ Type  │ Vulnerabilities │
├────────────────────────────────────────────────────────────────┼───────┼─────────────────┤
│ ghcr.io/wenisch-tech/s3webui:0.6.27-pr.34.245 (wolfi 20230201) │ wolfi │        0        │
├────────────────────────────────────────────────────────────────┼───────┼─────────────────┤
│ app/app.jar                                                    │  jar  │        0        │
└────────────────────────────────────────────────────────────────┴───────┴─────────────────┘
Legend:
- '-': Not scanned
- '0': Clean (no security findings detected)


@renovate-wenisch-tech
renovate-wenisch-tech Bot force-pushed the renovate/aws-java-sdk-v2-monorepo branch from 0564543 to f54db71 Compare September 2, 2026 22:05
@renovate-wenisch-tech renovate-wenisch-tech Bot changed the title fix(deps): update aws-java-sdk-v2 monorepo to v2.54.10 fix(deps): update aws-java-sdk-v2 monorepo to v2.54.11 Sep 2, 2026
@github-actions

github-actions Bot commented Sep 2, 2026

Copy link
Copy Markdown
Contributor

Trivy vulnerability report

Image: ghcr.io/wenisch-tech/s3webui:0.6.27-pr.34.249


Report Summary

┌────────────────────────────────────────────────────────────────┬───────┬─────────────────┐
│                             Target                             │ Type  │ Vulnerabilities │
├────────────────────────────────────────────────────────────────┼───────┼─────────────────┤
│ ghcr.io/wenisch-tech/s3webui:0.6.27-pr.34.249 (wolfi 20230201) │ wolfi │        0        │
├────────────────────────────────────────────────────────────────┼───────┼─────────────────┤
│ app/app.jar                                                    │  jar  │        0        │
└────────────────────────────────────────────────────────────────┴───────┴─────────────────┘
Legend:
- '-': Not scanned
- '0': Clean (no security findings detected)


@renovate-wenisch-tech
renovate-wenisch-tech Bot force-pushed the renovate/aws-java-sdk-v2-monorepo branch from f54db71 to 4bb5aad Compare September 3, 2026 22:05
@renovate-wenisch-tech renovate-wenisch-tech Bot changed the title fix(deps): update aws-java-sdk-v2 monorepo to v2.54.11 fix(deps): update aws-java-sdk-v2 monorepo to v2.54.12 Sep 3, 2026
@github-actions

github-actions Bot commented Sep 3, 2026

Copy link
Copy Markdown
Contributor

Trivy vulnerability report

Image: ghcr.io/wenisch-tech/s3webui:0.6.27-pr.34.251


Report Summary

┌────────────────────────────────────────────────────────────────┬───────┬─────────────────┐
│                             Target                             │ Type  │ Vulnerabilities │
├────────────────────────────────────────────────────────────────┼───────┼─────────────────┤
│ ghcr.io/wenisch-tech/s3webui:0.6.27-pr.34.251 (wolfi 20230201) │ wolfi │        0        │
├────────────────────────────────────────────────────────────────┼───────┼─────────────────┤
│ app/app.jar                                                    │  jar  │        3        │
└────────────────────────────────────────────────────────────────┴───────┴─────────────────┘
Legend:
- '-': Not scanned
- '0': Clean (no security findings detected)


For OSS Maintainers: VEX Notice
--------------------------------
If you're an OSS maintainer and Trivy has detected vulnerabilities in your project that you believe are not actually exploitable, consider issuing a VEX (Vulnerability Exploitability eXchange) statement.
VEX allows you to communicate the actual status of vulnerabilities in your project, improving security transparency and reducing false positives for your users.
Learn more and start using VEX: https://trivy.dev/docs/v0.74/guide/supply-chain/vex/repo#publishing-vex-documents

To disable this notice, set the TRIVY_DISABLE_VEX_NOTICE environment variable.


Java (jar)
==========
Total: 3 (MEDIUM: 0, HIGH: 0, CRITICAL: 3)

┌─────────────────────────────────────────────────────┬────────────────┬──────────┬────────┬───────────────────┬───────────────────────────┬──────────────────────────────────────────────────────────────┐
│                       Library                       │ Vulnerability  │ Severity │ Status │ Installed Version │       Fixed Version       │                            Title                             │
├─────────────────────────────────────────────────────┼────────────────┼──────────┼────────┼───────────────────┼───────────────────────────┼──────────────────────────────────────────────────────────────┤
│ org.apache.tomcat.embed:tomcat-embed-core (app.jar) │ CVE-2026-65182 │ CRITICAL │ fixed  │ 10.1.55           │ 11.0.25, 10.1.58, 9.0.121 │ Apache Tomcat: Apache Tomcat: Security constraint bypass due │
│                                                     │                │          │        │                   │                           │ to improper access control...                                │
│                                                     │                │          │        │                   │                           │ https://avd.aquasec.com/nvd/cve-2026-65182                   │
│                                                     ├────────────────┤          │        │                   │                           ├──────────────────────────────────────────────────────────────┤
│                                                     │ CVE-2026-65905 │          │        │                   │                           │ tomcat: Apache Tomcat: Authentication bypass via limited     │
│                                                     │                │          │        │                   │                           │ replay attack in DIGEST authenticator...                     │
│                                                     │                │          │        │                   │                           │ https://avd.aquasec.com/nvd/cve-2026-65905                   │
│                                                     ├────────────────┤          │        │                   │                           ├──────────────────────────────────────────────────────────────┤
│                                                     │ CVE-2026-68525 │          │        │                   │                           │ org.apache.tomcat/tomcat: Apache Tomcat: Unauthorized        │
│                                                     │                │          │        │                   │                           │ resource access via FORM authentication bypass               │
│                                                     │                │          │        │                   │                           │ https://avd.aquasec.com/nvd/cve-2026-68525                   │
└─────────────────────────────────────────────────────┴────────────────┴──────────┴────────┴───────────────────┴───────────────────────────┴──────────────────────────────────────────────────────────────┘

@renovate-wenisch-tech
renovate-wenisch-tech Bot force-pushed the renovate/aws-java-sdk-v2-monorepo branch from 4bb5aad to 08d770c Compare September 4, 2026 21:05
@renovate-wenisch-tech
renovate-wenisch-tech Bot force-pushed the renovate/aws-java-sdk-v2-monorepo branch from be17cca to 964fe60 Compare September 8, 2026 14:05
@github-actions

github-actions Bot commented Sep 8, 2026

Copy link
Copy Markdown
Contributor

Trivy vulnerability report

Image: ghcr.io/wenisch-tech/s3webui:1.0.3-pr.34.277


Report Summary

┌───────────────────────────────────────────────────────────────┬───────┬─────────────────┐
│                            Target                             │ Type  │ Vulnerabilities │
├───────────────────────────────────────────────────────────────┼───────┼─────────────────┤
│ ghcr.io/wenisch-tech/s3webui:1.0.3-pr.34.277 (wolfi 20230201) │ wolfi │        0        │
├───────────────────────────────────────────────────────────────┼───────┼─────────────────┤
│ app/app.jar                                                   │  jar  │        0        │
└───────────────────────────────────────────────────────────────┴───────┴─────────────────┘
Legend:
- '-': Not scanned
- '0': Clean (no security findings detected)


@renovate-wenisch-tech
renovate-wenisch-tech Bot force-pushed the renovate/aws-java-sdk-v2-monorepo branch from 964fe60 to 18e941e Compare September 8, 2026 21:05
@renovate-wenisch-tech renovate-wenisch-tech Bot changed the title fix(deps): update aws-java-sdk-v2 monorepo to v2.54.13 fix(deps): update aws-java-sdk-v2 monorepo to v2.54.14 Sep 8, 2026
@github-actions

github-actions Bot commented Sep 8, 2026

Copy link
Copy Markdown
Contributor

Trivy vulnerability report

Image: ghcr.io/wenisch-tech/s3webui:1.0.4-pr.34.284


Report Summary

┌───────────────────────────────────────────────────────────────┬───────┬─────────────────┐
│                            Target                             │ Type  │ Vulnerabilities │
├───────────────────────────────────────────────────────────────┼───────┼─────────────────┤
│ ghcr.io/wenisch-tech/s3webui:1.0.4-pr.34.284 (wolfi 20230201) │ wolfi │        0        │
├───────────────────────────────────────────────────────────────┼───────┼─────────────────┤
│ app/app.jar                                                   │  jar  │        0        │
└───────────────────────────────────────────────────────────────┴───────┴─────────────────┘
Legend:
- '-': Not scanned
- '0': Clean (no security findings detected)


@renovate-wenisch-tech
renovate-wenisch-tech Bot force-pushed the renovate/aws-java-sdk-v2-monorepo branch from 18e941e to 331baa6 Compare September 9, 2026 21:05
@renovate-wenisch-tech renovate-wenisch-tech Bot changed the title fix(deps): update aws-java-sdk-v2 monorepo to v2.54.14 fix(deps): update aws-java-sdk-v2 monorepo to v2.54.15 Sep 9, 2026
@github-actions

github-actions Bot commented Sep 9, 2026

Copy link
Copy Markdown
Contributor

Trivy vulnerability report

Image: ghcr.io/wenisch-tech/s3webui:1.0.7-pr.34.289


Report Summary

┌───────────────────────────────────────────────────────────────┬───────┬─────────────────┐
│                            Target                             │ Type  │ Vulnerabilities │
├───────────────────────────────────────────────────────────────┼───────┼─────────────────┤
│ ghcr.io/wenisch-tech/s3webui:1.0.7-pr.34.289 (wolfi 20230201) │ wolfi │        0        │
├───────────────────────────────────────────────────────────────┼───────┼─────────────────┤
│ app/app.jar                                                   │  jar  │        0        │
└───────────────────────────────────────────────────────────────┴───────┴─────────────────┘
Legend:
- '-': Not scanned
- '0': Clean (no security findings detected)


@renovate-wenisch-tech renovate-wenisch-tech Bot changed the title fix(deps): update aws-java-sdk-v2 monorepo to v2.54.15 fix(deps): update aws-java-sdk-v2 monorepo to v2.54.16 Sep 10, 2026
@renovate-wenisch-tech
renovate-wenisch-tech Bot force-pushed the renovate/aws-java-sdk-v2-monorepo branch from 331baa6 to 3cacff2 Compare September 10, 2026 21:05
@github-actions

Copy link
Copy Markdown
Contributor

Trivy vulnerability report

Image: ghcr.io/wenisch-tech/s3webui:1.2.1-pr.34.303


Report Summary

┌───────────────────────────────────────────────────────────────┬───────┬─────────────────┐
│                            Target                             │ Type  │ Vulnerabilities │
├───────────────────────────────────────────────────────────────┼───────┼─────────────────┤
│ ghcr.io/wenisch-tech/s3webui:1.2.1-pr.34.303 (wolfi 20230201) │ wolfi │        0        │
├───────────────────────────────────────────────────────────────┼───────┼─────────────────┤
│ app/app.jar                                                   │  jar  │        0        │
└───────────────────────────────────────────────────────────────┴───────┴─────────────────┘
Legend:
- '-': Not scanned
- '0': Clean (no security findings detected)


@renovate-wenisch-tech
renovate-wenisch-tech Bot force-pushed the renovate/aws-java-sdk-v2-monorepo branch from 3cacff2 to 6c50aa0 Compare September 12, 2026 12:16
@renovate-wenisch-tech renovate-wenisch-tech Bot changed the title fix(deps): update aws-java-sdk-v2 monorepo to v2.54.16 fix(deps): update aws-java-sdk-v2 monorepo to v2.54.17 Sep 12, 2026
@github-actions

Copy link
Copy Markdown
Contributor

Trivy vulnerability report

Image: ghcr.io/wenisch-tech/s3webui:1.2.2-pr.34.308


Report Summary

┌───────────────────────────────────────────────────────────────┬───────┬─────────────────┐
│                            Target                             │ Type  │ Vulnerabilities │
├───────────────────────────────────────────────────────────────┼───────┼─────────────────┤
│ ghcr.io/wenisch-tech/s3webui:1.2.2-pr.34.308 (wolfi 20230201) │ wolfi │        0        │
├───────────────────────────────────────────────────────────────┼───────┼─────────────────┤
│ app/app.jar                                                   │  jar  │        0        │
└───────────────────────────────────────────────────────────────┴───────┴─────────────────┘
Legend:
- '-': Not scanned
- '0': Clean (no security findings detected)


@renovate-wenisch-tech
renovate-wenisch-tech Bot force-pushed the renovate/aws-java-sdk-v2-monorepo branch from 6c50aa0 to 67c6def Compare September 14, 2026 22:05
@renovate-wenisch-tech renovate-wenisch-tech Bot changed the title fix(deps): update aws-java-sdk-v2 monorepo to v2.54.17 fix(deps): update aws-java-sdk-v2 monorepo to v2.54.18 Sep 14, 2026
@github-actions

Copy link
Copy Markdown
Contributor

Trivy vulnerability report

Image: ghcr.io/wenisch-tech/s3webui:1.2.2-pr.34.316


Report Summary

┌───────────────────────────────────────────────────────────────┬───────┬─────────────────┐
│                            Target                             │ Type  │ Vulnerabilities │
├───────────────────────────────────────────────────────────────┼───────┼─────────────────┤
│ ghcr.io/wenisch-tech/s3webui:1.2.2-pr.34.316 (wolfi 20230201) │ wolfi │        1        │
├───────────────────────────────────────────────────────────────┼───────┼─────────────────┤
│ app/app.jar                                                   │  jar  │        0        │
└───────────────────────────────────────────────────────────────┴───────┴─────────────────┘
Legend:
- '-': Not scanned
- '0': Clean (no security findings detected)


For OSS Maintainers: VEX Notice
--------------------------------
If you're an OSS maintainer and Trivy has detected vulnerabilities in your project that you believe are not actually exploitable, consider issuing a VEX (Vulnerability Exploitability eXchange) statement.
VEX allows you to communicate the actual status of vulnerabilities in your project, improving security transparency and reducing false positives for your users.
Learn more and start using VEX: https://trivy.dev/docs/v0.74/guide/supply-chain/vex/repo#publishing-vex-documents

To disable this notice, set the TRIVY_DISABLE_VEX_NOTICE environment variable.


ghcr.io/wenisch-tech/s3webui:1.2.2-pr.34.316 (wolfi 20230201)
=============================================================
Total: 1 (MEDIUM: 1, HIGH: 0, CRITICAL: 0)

┌─────────┬────────────────┬──────────┬────────┬───────────────────┬───────────────┬───────────────────────────────────────────────────────────┐
│ Library │ Vulnerability  │ Severity │ Status │ Installed Version │ Fixed Version │                           Title                           │
├─────────┼────────────────┼──────────┼────────┼───────────────────┼───────────────┼───────────────────────────────────────────────────────────┤
│ zlib    │ CVE-2026-85091 │ MEDIUM   │ fixed  │ 1.3.2-r6          │ 1.3.3-r0      │ zlib versions 1.3.1.2 through 1.3.2 contain a heap buffer │
│         │                │          │        │                   │               │ overflow vul ......                                       │
│         │                │          │        │                   │               │ https://avd.aquasec.com/nvd/cve-2026-85091                │
└─────────┴────────────────┴──────────┴────────┴───────────────────┴───────────────┴───────────────────────────────────────────────────────────┘

@renovate-wenisch-tech
renovate-wenisch-tech Bot force-pushed the renovate/aws-java-sdk-v2-monorepo branch from 67c6def to 905e8a0 Compare September 15, 2026 22:06
@renovate-wenisch-tech renovate-wenisch-tech Bot changed the title fix(deps): update aws-java-sdk-v2 monorepo to v2.54.18 fix(deps): update aws-java-sdk-v2 monorepo to v2.54.19 Sep 15, 2026
@github-actions

Copy link
Copy Markdown
Contributor

Trivy vulnerability report

Image: ghcr.io/wenisch-tech/s3webui:1.2.4-pr.34.324


Report Summary

┌───────────────────────────────────────────────────────────────┬───────┬─────────────────┐
│                            Target                             │ Type  │ Vulnerabilities │
├───────────────────────────────────────────────────────────────┼───────┼─────────────────┤
│ ghcr.io/wenisch-tech/s3webui:1.2.4-pr.34.324 (wolfi 20230201) │ wolfi │        1        │
├───────────────────────────────────────────────────────────────┼───────┼─────────────────┤
│ app/app.jar                                                   │  jar  │        0        │
└───────────────────────────────────────────────────────────────┴───────┴─────────────────┘
Legend:
- '-': Not scanned
- '0': Clean (no security findings detected)


For OSS Maintainers: VEX Notice
--------------------------------
If you're an OSS maintainer and Trivy has detected vulnerabilities in your project that you believe are not actually exploitable, consider issuing a VEX (Vulnerability Exploitability eXchange) statement.
VEX allows you to communicate the actual status of vulnerabilities in your project, improving security transparency and reducing false positives for your users.
Learn more and start using VEX: https://trivy.dev/docs/v0.74/guide/supply-chain/vex/repo#publishing-vex-documents

To disable this notice, set the TRIVY_DISABLE_VEX_NOTICE environment variable.


ghcr.io/wenisch-tech/s3webui:1.2.4-pr.34.324 (wolfi 20230201)
=============================================================
Total: 1 (MEDIUM: 1, HIGH: 0, CRITICAL: 0)

┌─────────┬────────────────┬──────────┬────────┬───────────────────┬───────────────┬───────────────────────────────────────────────────────────┐
│ Library │ Vulnerability  │ Severity │ Status │ Installed Version │ Fixed Version │                           Title                           │
├─────────┼────────────────┼──────────┼────────┼───────────────────┼───────────────┼───────────────────────────────────────────────────────────┤
│ zlib    │ CVE-2026-85091 │ MEDIUM   │ fixed  │ 1.3.2-r7          │ 1.3.3-r0      │ zlib versions 1.3.1.2 through 1.3.2 contain a heap buffer │
│         │                │          │        │                   │               │ overflow vul ......                                       │
│         │                │          │        │                   │               │ https://avd.aquasec.com/nvd/cve-2026-85091                │
└─────────┴────────────────┴──────────┴────────┴───────────────────┴───────────────┴───────────────────────────────────────────────────────────┘

@renovate-wenisch-tech
renovate-wenisch-tech Bot force-pushed the renovate/aws-java-sdk-v2-monorepo branch from 905e8a0 to cf1719f Compare September 16, 2026 22:14
@renovate-wenisch-tech renovate-wenisch-tech Bot changed the title fix(deps): update aws-java-sdk-v2 monorepo to v2.54.19 fix(deps): update aws-java-sdk-v2 monorepo to v2.54.20 Sep 16, 2026
@github-actions

Copy link
Copy Markdown
Contributor

Trivy vulnerability report

Image: ghcr.io/wenisch-tech/s3webui:1.2.4-pr.34.326


Report Summary

┌───────────────────────────────────────────────────────────────┬───────┬─────────────────┐
│                            Target                             │ Type  │ Vulnerabilities │
├───────────────────────────────────────────────────────────────┼───────┼─────────────────┤
│ ghcr.io/wenisch-tech/s3webui:1.2.4-pr.34.326 (wolfi 20230201) │ wolfi │        1        │
├───────────────────────────────────────────────────────────────┼───────┼─────────────────┤
│ app/app.jar                                                   │  jar  │        0        │
└───────────────────────────────────────────────────────────────┴───────┴─────────────────┘
Legend:
- '-': Not scanned
- '0': Clean (no security findings detected)


For OSS Maintainers: VEX Notice
--------------------------------
If you're an OSS maintainer and Trivy has detected vulnerabilities in your project that you believe are not actually exploitable, consider issuing a VEX (Vulnerability Exploitability eXchange) statement.
VEX allows you to communicate the actual status of vulnerabilities in your project, improving security transparency and reducing false positives for your users.
Learn more and start using VEX: https://trivy.dev/docs/v0.74/guide/supply-chain/vex/repo#publishing-vex-documents

To disable this notice, set the TRIVY_DISABLE_VEX_NOTICE environment variable.


ghcr.io/wenisch-tech/s3webui:1.2.4-pr.34.326 (wolfi 20230201)
=============================================================
Total: 1 (MEDIUM: 1, HIGH: 0, CRITICAL: 0)

┌─────────┬────────────────┬──────────┬────────┬───────────────────────┬───────────────┬───────────────────────────────────────────────────────────┐
│ Library │ Vulnerability  │ Severity │ Status │   Installed Version   │ Fixed Version │                           Title                           │
├─────────┼────────────────┼──────────┼────────┼───────────────────────┼───────────────┼───────────────────────────────────────────────────────────┤
│ zlib    │ CVE-2026-85091 │ MEDIUM   │ fixed  │ 1.3.2.1_rc20260601-r0 │ 1.3.3-r0      │ zlib versions 1.3.1.2 through 1.3.2 contain a heap buffer │
│         │                │          │        │                       │               │ overflow vul ......                                       │
│         │                │          │        │                       │               │ https://avd.aquasec.com/nvd/cve-2026-85091                │
└─────────┴────────────────┴──────────┴────────┴───────────────────────┴───────────────┴───────────────────────────────────────────────────────────┘

@renovate-wenisch-tech
renovate-wenisch-tech Bot force-pushed the renovate/aws-java-sdk-v2-monorepo branch from cf1719f to a930f84 Compare September 17, 2026 21:15
@renovate-wenisch-tech renovate-wenisch-tech Bot changed the title fix(deps): update aws-java-sdk-v2 monorepo to v2.54.20 fix(deps): update aws-java-sdk-v2 monorepo to v2.55.0 Sep 17, 2026
@github-actions

Copy link
Copy Markdown
Contributor

Trivy vulnerability report

Image: ghcr.io/wenisch-tech/s3webui:1.2.4-pr.34.332


Report Summary

┌───────────────────────────────────────────────────────────────┬───────┬─────────────────┐
│                            Target                             │ Type  │ Vulnerabilities │
├───────────────────────────────────────────────────────────────┼───────┼─────────────────┤
│ ghcr.io/wenisch-tech/s3webui:1.2.4-pr.34.332 (wolfi 20230201) │ wolfi │        0        │
├───────────────────────────────────────────────────────────────┼───────┼─────────────────┤
│ app/app.jar                                                   │  jar  │        0        │
└───────────────────────────────────────────────────────────────┴───────┴─────────────────┘
Legend:
- '-': Not scanned
- '0': Clean (no security findings detected)


@renovate-wenisch-tech
renovate-wenisch-tech Bot force-pushed the renovate/aws-java-sdk-v2-monorepo branch from a930f84 to 67569c6 Compare September 18, 2026 22:18
@renovate-wenisch-tech renovate-wenisch-tech Bot changed the title fix(deps): update aws-java-sdk-v2 monorepo to v2.55.0 fix(deps): update aws-java-sdk-v2 monorepo to v2.55.1 Sep 18, 2026
@github-actions

Copy link
Copy Markdown
Contributor

Trivy vulnerability report

Image: ghcr.io/wenisch-tech/s3webui:1.2.4-pr.34.334


Report Summary

┌───────────────────────────────────────────────────────────────┬───────┬─────────────────┐
│                            Target                             │ Type  │ Vulnerabilities │
├───────────────────────────────────────────────────────────────┼───────┼─────────────────┤
│ ghcr.io/wenisch-tech/s3webui:1.2.4-pr.34.334 (wolfi 20230201) │ wolfi │        0        │
├───────────────────────────────────────────────────────────────┼───────┼─────────────────┤
│ app/app.jar                                                   │  jar  │        0        │
└───────────────────────────────────────────────────────────────┴───────┴─────────────────┘
Legend:
- '-': Not scanned
- '0': Clean (no security findings detected)


Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Projects

None yet

Development

Successfully merging this pull request may close these issues.

0 participants