SWI-3723 [Snyk] Security upgrade org.assertj:assertj-core from 3.11.1 to 3.27.7#38
SWI-3723 [Snyk] Security upgrade org.assertj:assertj-core from 3.11.1 to 3.27.7#38
Conversation
The following vulnerabilities are fixed with an upgrade: - https://snyk.io/vuln/SNYK-JAVA-ORGASSERTJ-15102413
|
This is a large minor version upgrade for a test assertion library. While it remains on the same major version, several subtle breaking changes were introduced between versions 3.11.1 and 3.27.7 that could cause test failures.
Source: AssertJ GitHub Issues and Documentation
|
|
This is a significant minor version upgrade for a test library, spanning from 3.11.1 to 3.27.7. While not a major version change, several breaking changes have been introduced across these versions that may require test code modifications. Key breaking changes include:
Source: AssertJ documentation and GitHub issues. [1, 2]
|
✅ Snyk checks have passed. No issues have been found so far.
💻 Catch issues earlier using the plugins for VS Code, JetBrains IDEs, Visual Studio, and Eclipse. |
Snyk has created this PR to fix 1 vulnerabilities in the maven dependencies of this project.
Snyk changed the following file(s):
pom.xmlVulnerabilities that will be fixed with an upgrade:
SNYK-JAVA-ORGASSERTJ-15102413
3.11.1->3.27.7No Path FoundNo Known ExploitImportant
Note: You are seeing this because you or someone else with access to this repository has authorized Snyk to open fix PRs.
For more information:
🧐 View latest project report
📜 Customise PR templates
🛠 Adjust project settings
📚 Read about Snyk's upgrade logic
Learn how to fix vulnerabilities with free interactive lessons:
🦉 XML External Entity (XXE) Injection