Skip to content

Bump spring-boot-autoconfigure from 2.4.4 to 2.5.15 in /Quick_ACG - #22

Open
dependabot[bot] wants to merge 1 commit into
masterfrom
dependabot/maven/Quick_ACG/org.springframework.boot-spring-boot-autoconfigure-2.5.15
Open

dependabot[bot] wants to merge 1 commit into
masterfrom
dependabot/maven/Quick_ACG/org.springframework.boot-spring-boot-autoconfigure-2.5.15

Bump spring-boot-autoconfigure from 2.4.4 to 2.5.15 in /Quick_ACG

f33530b
Select commit
Loading
Failed to load commit list.
GitHub Advanced Security / CodeQL failed Sep 25, 2026 in 5s

10 new alerts including 8 high severity security vulnerabilities

New alerts in code changed by this pull request

Security Alerts:

  • 8 high
  • 2 medium

Alerts not introduced by this pull request might have been detected because the code changes were too large.

See annotations below for details.

View all branch alerts.

Annotations

Check warning on line 37 in .github/workflows/maven.yml

See this annotation in the file changed.

Code scanning / CodeQL

Workflow does not contain permissions Medium

Actions job or workflow does not limit the permissions of the GITHUB_TOKEN. Consider setting an explicit permissions block, using the following as a minimal starting point: {contents: read}

Check failure on line 147 in src/main/resources/public/assets/search.js

See this annotation in the file changed.

Code scanning / CodeQL

DOM text reinterpreted as HTML High

DOM text
is reinterpreted as HTML without escaping meta-characters.

Check failure on line 164 in src/main/resources/public/assets/search.js

See this annotation in the file changed.

Code scanning / CodeQL

DOM text reinterpreted as HTML High

DOM text
is reinterpreted as HTML without escaping meta-characters.

Check failure on line 172 in src/main/resources/public/assets/search.js

See this annotation in the file changed.

Code scanning / CodeQL

DOM text reinterpreted as HTML High

DOM text
is reinterpreted as HTML without escaping meta-characters.

Check failure on line 175 in src/main/resources/public/assets/search.js

See this annotation in the file changed.

Code scanning / CodeQL

DOM text reinterpreted as HTML High

DOM text
is reinterpreted as HTML without escaping meta-characters.

Check failure on line 167 in src/main/resources/public/assets/search.js

See this annotation in the file changed.

Code scanning / CodeQL

DOM text reinterpreted as HTML High

DOM text
is reinterpreted as HTML without escaping meta-characters.

Check failure on line 184 in src/main/resources/public/assets/search.js

See this annotation in the file changed.

Code scanning / CodeQL

DOM text reinterpreted as HTML High

DOM text
is reinterpreted as HTML without escaping meta-characters.

Check failure on line 211 in src/main/resources/public/assets/search.js

See this annotation in the file changed.

Code scanning / CodeQL

DOM text reinterpreted as HTML High

DOM text
is reinterpreted as HTML without escaping meta-characters.

Check warning on line 113 in src/main/webapp/WEB-INF/templates/views/pages/esignature/index.jsp

See this annotation in the file changed.

Code scanning / CodeQL

Inclusion of functionality from an untrusted source Medium

Script loaded from content delivery network with no integrity check.

Check failure on line 49 in Quick_ACG/src/main/java/com/docusign/WebSecurityConfig.java

See this annotation in the file changed.

Code scanning / CodeQL

Disabled Spring CSRF protection High

CSRF vulnerability due to protection being disabled.