Uploaded image for project: 'Commons Configuration'
  1. Commons Configuration
  2. CONFIGURATION-830

Update commons-text from 1.9 to 1.10.0

    XMLWordPrintableJSON

Details

    • Task
    • Status: Closed
    • Trivial
    • Resolution: Fixed
    • 2.8.0
    • 2.9.0
    • Build
    • None

    Description

      commons-configuration2 version 2.8.0 has a dependency on commons-text:1.9 that has a critical vulnerability: [CVE-2022-42889] CWE-94: Improper Control of Generation of Code ('Code Injection').  See org.apache.commons:commons-text:1.9 for details.

      Attachments

        Activity

          People

            Unassigned Unassigned
            marioja Mario Jauvin
            Votes:
            0 Vote for this issue
            Watchers:
            2 Start watching this issue

            Dates

              Created:
              Updated:
              Resolved: