[Snyk] Security upgrade io.ktor:ktor-server-netty from 1.5.3 to 2.0.0#322
[Snyk] Security upgrade io.ktor:ktor-server-netty from 1.5.3 to 2.0.0#322caniszczyk wants to merge 1 commit into
Conversation
The following vulnerabilities are fixed with an upgrade: - https://snyk.io/vuln/SNYK-JAVA-IONETTY-18170202 - https://snyk.io/vuln/SNYK-JAVA-IONETTY-18170204 - https://snyk.io/vuln/SNYK-JAVA-IONETTY-18170213
|
The upgrade from Ktor 1.5.3 to 2.0.0 is a major version change with significant and extensive breaking changes that will require substantial code modification. Key Breaking Changes:
Source: Ktor 2.0 Migration Guide. Recommendation: This is a high-effort migration. Developers must carefully follow the official migration guide to update package imports, dependencies, plugin configurations, and rewrite all server tests. Automated migration tools offered by IntelliJ IDEA may assist but manual intervention is expected.
|
|
|
Snyk has created this PR to fix 3 vulnerabilities in the maven dependencies of this project.
Snyk changed the following file(s):
builders/testdata/java/ktordemo/pom.xmlVulnerabilities that will be fixed with an upgrade:
SNYK-JAVA-IONETTY-18170202
1.5.3->2.0.0Major version upgradeProof of ConceptSNYK-JAVA-IONETTY-18170204
1.5.3->2.0.0Major version upgradeProof of ConceptSNYK-JAVA-IONETTY-18170213
1.5.3->2.0.0Major version upgradeNo Known ExploitBreaking Change Risk
Important
Note: You are seeing this because you or someone else with access to this repository has authorized Snyk to open fix PRs.
For more information:
🧐 View latest project report
📜 Customise PR templates
🛠 Adjust project settings
📚 Read about Snyk's upgrade logic
Learn how to fix vulnerabilities with free interactive lessons:
🦉 Allocation of Resources Without Limits or Throttling