Skip to content

Update dependency org.springframework:spring-context to v6

b551413
Select commit
Loading
Failed to load commit list.
Open

Update dependency org.springframework:spring-context to v6 #18

Update dependency org.springframework:spring-context to v6
b551413
Select commit
Loading
Failed to load commit list.
Dev - Mend for GitHub.com / Mend Security Check failed Feb 25, 2026 in 53m 37s

Security Report

You have successfully remediated 22 vulnerabilities, but introduced 12 new vulnerabilities in this branch.

❌ New vulnerabilities:

Vulnerability Severity CVSS Score Vulnerable Library Direct Library Suggested Fix Issue Reachability
CVE-2025-41249

Path to dependency file: /plugins/junit/pom.xml

Path to vulnerable library: /home/wss-scanner/.m2/repository/org/springframework/spring-core/6.1.20/spring-core-6.1.20.jar,/home/wss-scanner/.m2/repository/org/springframework/spring-core/6.1.20/spring-core-6.1.20.jar,/home/wss-scanner/.m2/repository/org/springframework/spring-core/6.1.20/spring-core-6.1.20.jar,/home/wss-scanner/.m2/repository/org/springframework/spring-core/6.1.20/spring-core-6.1.20.jar,/home/wss-scanner/.m2/repository/org/springframework/spring-core/6.1.20/spring-core-6.1.20.jar,/home/wss-scanner/.m2/repository/org/springframework/spring-core/6.1.20/spring-core-6.1.20.jar,/home/wss-scanner/.m2/repository/org/springframework/spring-core/6.1.20/spring-core-6.1.20.jar

Dependency Hierarchy:

-> ❌ spring-core-6.1.20.jar (Vulnerable Library)

High 7.5 Direct spring-core-6.1.20.jar spring-core-6.1.20.jar https://github.com/spring-projects/spring-framework.git - v6.2.11,org.springframework:spring-core:6.2.11 None
CVE-2020-11023

Dependency Hierarchy:

-> ❌ jquery-1.12.4.min.js (Vulnerable Library)

Medium 6.9 Direct jquery-1.12.4.min.js jquery-1.12.4.min.js org.webjars.npm:jquery:3.5.0,jquery - 3.5.0,jquery-rails - 4.4.0,jQuery - 3.5.0,jquery - 3.5.0,jquery-rails - 4.4.0,org.webjars.npm:jquery:3.5.0,jQuery - 3.5.0 #8
CVE-2020-11022

Dependency Hierarchy:

-> ❌ jquery-1.12.4.min.js (Vulnerable Library)

Medium 6.9 Direct jquery-1.12.4.min.js jquery-1.12.4.min.js org.webjars.npm:jquery:3.5.0,jquery - 3.5.0,jquery - 3.5.0,jquery-rails - 4.4.0 #8
CVE-2025-41234

Path to dependency file: /apps/showcase/pom.xml

Path to vulnerable library: /home/wss-scanner/.m2/repository/org/springframework/spring-web/6.1.20/spring-web-6.1.20.jar,/home/wss-scanner/.m2/repository/org/springframework/spring-web/6.1.20/spring-web-6.1.20.jar,/home/wss-scanner/.m2/repository/org/springframework/spring-web/6.1.20/spring-web-6.1.20.jar,/home/wss-scanner/.m2/repository/org/springframework/spring-web/6.1.20/spring-web-6.1.20.jar,/home/wss-scanner/.m2/repository/org/springframework/spring-web/6.1.20/spring-web-6.1.20.jar

Dependency Hierarchy:

-> ❌ spring-web-6.1.20.jar (Vulnerable Library)

Medium 6.5 Direct spring-web-6.1.20.jar spring-web-6.1.20.jar 6.1.21 None
CVE-2018-1257

Path to dependency file: /plugins/junit/pom.xml

Path to vulnerable library: /home/wss-scanner/.m2/repository/org/springframework/spring-core/6.1.20/spring-core-6.1.20.jar,/home/wss-scanner/.m2/repository/org/springframework/spring-core/6.1.20/spring-core-6.1.20.jar,/home/wss-scanner/.m2/repository/org/springframework/spring-core/6.1.20/spring-core-6.1.20.jar,/home/wss-scanner/.m2/repository/org/springframework/spring-core/6.1.20/spring-core-6.1.20.jar,/home/wss-scanner/.m2/repository/org/springframework/spring-core/6.1.20/spring-core-6.1.20.jar,/home/wss-scanner/.m2/repository/org/springframework/spring-core/6.1.20/spring-core-6.1.20.jar,/home/wss-scanner/.m2/repository/org/springframework/spring-core/6.1.20/spring-core-6.1.20.jar

Dependency Hierarchy:

-> ❌ spring-core-6.1.20.jar (Vulnerable Library)

Medium 6.5 Direct spring-core-6.1.20.jar spring-core-6.1.20.jar 5.0.6,4.3.17 None
CVE-2019-11358

Dependency Hierarchy:

-> ❌ jquery-1.12.4.min.js (Vulnerable Library)

Medium 6.1 Direct jquery-1.12.4.min.js jquery-1.12.4.min.js org.webjars.npm:jquery:3.4.0,django - 2.2.2,jquery - 3.4.0,jquery-rails - 4.3.4,django - 2.1.9,jQuery - 3.4.0,jquery-rails - 4.3.4,django - 2.2.2,django - 2.1.9,org.webjars.npm:jquery:3.4.0,jQuery - 3.4.0,jquery - 3.4.0 #8
CVE-2018-20677

Dependency Hierarchy:

-> ❌ bootstrap-3.3.4.min.js (Vulnerable Library)

Medium 6.1 Direct bootstrap-3.3.4.min.js bootstrap-3.3.4.min.js bootstrap - 3.4.0,org.webjars:bootstrap:3.4.0,bootstrap-sass - 3.4.0,bootstrap-sass - 3.4.0,bootstrap - 3.4.0 #5
CVE-2018-20676

Dependency Hierarchy:

-> ❌ bootstrap-3.3.4.min.js (Vulnerable Library)

Medium 6.1 Direct bootstrap-3.3.4.min.js bootstrap-3.3.4.min.js bootstrap - 3.4.0,bootstrap-sass - 3.4.0,org.webjars:bootstrap:3.4.0,bootstrap - 3.4.0,bootstrap-sass - 3.4.0 #5
CVE-2018-14040

Dependency Hierarchy:

-> ❌ bootstrap-3.3.4.min.js (Vulnerable Library)

Medium 6.1 Direct bootstrap-3.3.4.min.js bootstrap-3.3.4.min.js org.webjars:bootstrap:4.1.2,https://github.com/twbs/bootstrap.git - v4.1.2,bootstrap - 4.1.2,bootstrap-sass - 3.4.0,bootstrap - 3.4.0,bootstrap - 4.1.2,bootstrap - 4.1.2,org.webjars:bootstrap:3.4.0,bootstrap.sass - 4.1.2,bootstrap - 3.4.0 #5
CVE-2016-10735

Dependency Hierarchy:

-> ❌ bootstrap-3.3.4.min.js (Vulnerable Library)

Medium 6.1 Direct bootstrap-3.3.4.min.js bootstrap-3.3.4.min.js bootstrap - 3.4.0,bootstrap-sass - 3.4.0,org.webjars:bootstrap:3.4.0,bootstrap - 3.4.0,bootstrap-sass - 3.4.0,bootstrap - 4.0.0-beta.2,org.webjars:bootstrap:4.0.0-beta.2 #5
CVE-2015-9251

Dependency Hierarchy:

-> ❌ jquery-1.12.4.min.js (Vulnerable Library)

Medium 6.1 Direct jquery-1.12.4.min.js jquery-1.12.4.min.js jquery - 3.0.0,org.webjars.npm:jquery:1.12.2,jQuery - 3.0.0,jquery-rails - 4.2.0,jquery - 1.12.2,org.webjars.npm:jquery:3.0.0,jQuery - 1.12.2,jQuery - 3.0.0,org.webjars.npm:jquery:1.12.2,org.webjars.npm:jquery:3.0.0,jquery - 3.0.0,jquery - 1.12.2,jQuery - 1.12.2,jquery-rails - 4.2.0 #8
CVE-2018-1271

Path to dependency file: /plugins/junit/pom.xml

Path to vulnerable library: /home/wss-scanner/.m2/repository/org/springframework/spring-core/6.1.20/spring-core-6.1.20.jar,/home/wss-scanner/.m2/repository/org/springframework/spring-core/6.1.20/spring-core-6.1.20.jar,/home/wss-scanner/.m2/repository/org/springframework/spring-core/6.1.20/spring-core-6.1.20.jar,/home/wss-scanner/.m2/repository/org/springframework/spring-core/6.1.20/spring-core-6.1.20.jar,/home/wss-scanner/.m2/repository/org/springframework/spring-core/6.1.20/spring-core-6.1.20.jar,/home/wss-scanner/.m2/repository/org/springframework/spring-core/6.1.20/spring-core-6.1.20.jar,/home/wss-scanner/.m2/repository/org/springframework/spring-core/6.1.20/spring-core-6.1.20.jar

Dependency Hierarchy:

-> ❌ spring-core-6.1.20.jar (Vulnerable Library)

Medium 5.9 Direct spring-core-6.1.20.jar spring-core-6.1.20.jar org.springframework:spring-webflux:5.0.5.RELEASE,org.springframework:spring-webmvc:4.3.15.RELEASE,5.0.5.RELEASE None

✔️ Remediated vulnerabilities:

Vulnerability Vulnerable Library
CVE-2019-11358 jquery-1.9.2.js
CVE-2024-38820 spring-core-5.3.31.jar
CVE-2025-41249 spring-core-5.3.31.jar
CVE-2020-11023 jquery-2.1.4.min.js
CVE-2018-1271 spring-core-5.3.31.jar
CVE-2020-11023 jquery-1.9.2.js
CVE-2018-1257 spring-core-5.3.31.jar
CVE-2024-22259 spring-web-5.3.31.jar
CVE-2024-22243 spring-web-5.3.31.jar
CVE-2024-38828 spring-core-5.3.31.jar
CVE-2024-38809 spring-web-5.3.31.jar
CVE-2024-38820 spring-web-5.3.31.jar
CVE-2020-11022 jquery-1.9.2.js
CVE-2018-20677 struts-STRUTS_2_5_33
CVE-2015-9251 jquery-2.1.4.min.js
CVE-2015-9251 jquery-1.9.2.js
CVE-2024-38828 spring-web-5.3.31.jar
CVE-2019-11358 jquery-2.1.4.min.js
CVE-2025-22233 spring-context-5.3.31.jar
CVE-2020-11022 jquery-2.1.4.min.js
CVE-2024-38808 spring-expression-5.3.31.jar
CVE-2018-14040 struts-STRUTS_2_5_33

Base branch total remaining vulnerabilities: 43
Base branch commit: 6b1fdbf919ae4458f9791f009eaad0db6d84381a


Total libraries scanned: 102

Scan token: c3c5d67fd9844ec6bf49e2e3f5be0ca2