Skip to content
New issue

Have a question about this project? # for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “#”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? # to your account

Remediate Security Vulnerabilities #627

Closed
kamalcph opened this issue Nov 22, 2019 · 0 comments · Fixed by #628
Closed

Remediate Security Vulnerabilities #627

kamalcph opened this issue Nov 22, 2019 · 0 comments · Fixed by #628
Assignees

Comments

@kamalcph
Copy link
Contributor

kamalcph commented Nov 22, 2019

The following libs are vulnerable to security:

  1. Apache Common BeanUtils 1.9.3 (CVE-2019-10086)
  2. jackson-databind 2.9.8 (CVE-2019-14379, CVE-2019-14540, CVE-2019-17531, CVE-2019-16942, CVE-2019-17267, CVE-2019-16943, CVE-2019-16335, CVE-2019-12086, CVE-2019-14439, CVE-2019-12384, CVE-2019-12814) and
  3. Logback 1.1.7 (CVE-2017-5929)

We should upgrade the libs to latest.

# for free to join this conversation on GitHub. Already have an account? # to comment
Labels
None yet
Projects
None yet
Development

Successfully merging a pull request may close this issue.

1 participant