Details
-
Improvement
-
Status: Closed
-
Major
-
Resolution: Fixed
-
None
-
None
-
Unknown
Description
Currently Guava 30.1-re (https://github.com/apache/cxf/blob/f615b09bf9eaffc532ba08dcf198eb831b6f484f/parent/pom.xml#L123) is used.
Our dependency checker shows a potential security issue CVE-2023-2976 with this version.
Please update Guava at least to 32.0.1 (recommended version in the CVE).