I hope you are the team doing dependency upgrades for spring-boot-starter-test.
In spring-boot-starter-test there is a com.jayway.jsonpath:json-path dependency with version 2.8.0. It has a bug in it. Can you consider to upgrade to 2.9.0 for the next Spring Boot version?
https://mvnrepository.com/artifact/org.springframework.boot/spring-boot-starter-test/3.2.2 https://mvnrepository.com/artifact/com.jayway.jsonpath/json-path https://devhub.checkmarx.com/cve-details/CVE-2023-51074/
Comment From: scottfrederick
Duplicates #39328