Hi, apache.commons.text have disvovered vulnerable in version before 1.9, it have saw you already merge update but also need to update mvn repo I think. Details: https://devhub.checkmarx.com/cve-details/CVE-2022-42889/?utm_source=jetbrains&utm_medium=referral&utm_campaign=idea&utm_term=maven as you can see the mvnrepo still see the vulnerabilities 😢 https://mvnrepository.com/artifact/net.andreinc/mockneat/0.4.8 