Skip to content

Conversation

@mend-for-github.amrom.workers.dev
Copy link

@mend-for-github.amrom.workers.dev mend-for-github.amrom.workers.dev bot commented May 15, 2025

This PR contains the following updates:

Package Type Update Change
mysql:mysql-connector-java → com.mysql:mysql-connector-j compile replacement 8.0.12 -> 8.0.33

By merging this PR, the issue #17 will be automatically resolved and closed:

Severity CVSS Score Vulnerability Reachability
High High 8.8 CVE-2018-3258

Unreachable

High High 8.3 CVE-2023-22102

Unreachable

High High 7.5 CVE-2024-7254

Reachable

Medium Medium 6.3 CVE-2019-2692

Unreachable

Medium Medium 5.0 CVE-2020-2934

Unreachable

Medium Medium 4.3 CVE-2022-3171

Reachable

This is a special PR that replaces mysql:mysql-connector-java with the community suggested minimal stable replacement version.


  • If you want to rebase/retry this PR, check this box

@mend-for-github.amrom.workers.dev mend-for-github.amrom.workers.dev bot force-pushed the whitesource-remediate/mysql-mysql-connector-java-replacement branch from 53087f3 to bbacb3a Compare October 17, 2025 14:55
@mend-for-github.amrom.workers.dev mend-for-github.amrom.workers.dev bot added the security fix Security fix generated by Mend label Oct 17, 2025
@mend-for-github.amrom.workers.dev mend-for-github.amrom.workers.dev bot force-pushed the whitesource-remediate/mysql-mysql-connector-java-replacement branch from bbacb3a to 6be4a97 Compare October 28, 2025 13:10
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

security fix Security fix generated by Mend

Projects

None yet

Development

Successfully merging this pull request may close these issues.

1 participant