Conversation
… vulnerabilities The following vulnerabilities are fixed with an upgrade: - https://snyk.io/vuln/SNYK-JAVA-COMFASTERXMLJACKSONCORE-15365924
|
This upgrade contains a significant major version jump for org.jboss.resteasy:resteasy-jackson2-provider (3.13.0.Final → 6.2.0.Final)Risk: HIGH This is a major version upgrade that requires significant code and dependency modifications. The primary breaking change is the migration from Java EE to Jakarta EE.
Recommendation: This upgrade cannot be merged without a planned migration effort. Developers must update all JAX-RS imports to the new Source: RESTEasy 6.2 Upgrade Guide, RESTEasy Migration Documentation com.fasterxml.jackson.datatype:jackson-datatype-jsr310 (2.17.1 → 2.18.6)Risk: LOW This is a minor version upgrade. The release notes for Jackson 2.18 indicate no breaking changes for the Source: Jackson 2.18 Release Notes
|
✅ Snyk checks have passed. No issues have been found so far.
💻 Catch issues earlier using the plugins for VS Code, JetBrains IDEs, Visual Studio, and Eclipse. |
Snyk has created this PR to fix 1 vulnerabilities in the maven dependencies of this project.
Snyk changed the following file(s):
samples/server/petstore/jaxrs-resteasy/default/pom.xmlVulnerabilities that will be fixed with an upgrade:
SNYK-JAVA-COMFASTERXMLJACKSONCORE-15365924
2.17.1->2.18.6org.jboss.resteasy:resteasy-jackson2-provider:
3.13.0.Final->6.2.0.FinalMajor version upgradeNo Path FoundProof of ConceptBreaking Change Risk
Important
Note: You are seeing this because you or someone else with access to this repository has authorized Snyk to open fix PRs.
For more information:
🧐 View latest project report
📜 Customise PR templates
🛠 Adjust project settings
📚 Read about Snyk's upgrade logic
Learn how to fix vulnerabilities with free interactive lessons:
🦉 Allocation of Resources Without Limits or Throttling