Conversation
…ce vulnerabilities The following vulnerabilities are fixed with an upgrade: - https://snyk.io/vuln/SNYK-JAVA-COMFASTERXMLJACKSONCORE-15365924
|
This upgrade contains a major version jump for org.jboss.resteasy:resteasy-jackson2-provider (3.0.11.Final → 6.2.0.Final)Risk: HIGH This is a substantial multi-version upgrade that requires significant developer action. The most critical change is the migration from Java EE to Jakarta EE, which happened in RESTEasy 6.0. Key Breaking Changes:
Recommendation: This upgrade cannot be completed without significant code and dependency modifications. Developers must perform a full migration of com.fasterxml.jackson.datatype:jackson-datatype-jsr310 (2.9.9 → 2.18.6)Risk: LOW This is a minor version upgrade that spans several releases. Analysis of the changes between versions 2.9.9 and 2.18.6 indicates no major breaking API changes. The updates primarily consist of bug fixes, performance improvements, and new features. The module for supporting Java 8
|
✅ Snyk checks have passed. No issues have been found so far.
💻 Catch issues earlier using the plugins for VS Code, JetBrains IDEs, Visual Studio, and Eclipse. |
Snyk has created this PR to fix 1 vulnerabilities in the maven dependencies of this project.
Snyk changed the following file(s):
samples/server/petstore/jaxrs-resteasy/eap-java8/pom.xmlVulnerabilities that will be fixed with an upgrade:
SNYK-JAVA-COMFASTERXMLJACKSONCORE-15365924
2.9.9->2.18.6org.jboss.resteasy:resteasy-jackson2-provider:
3.0.11.Final->6.2.0.FinalMajor version upgradeNo Path FoundProof of ConceptBreaking Change Risk
Important
Note: You are seeing this because you or someone else with access to this repository has authorized Snyk to open fix PRs.
For more information:
🧐 View latest project report
📜 Customise PR templates
🛠 Adjust project settings
📚 Read about Snyk's upgrade logic
Learn how to fix vulnerabilities with free interactive lessons:
🦉 Allocation of Resources Without Limits or Throttling