Uploaded image for project: 'Felix'
  1. Felix
  2. FELIX-6391

Update embedded commons-io to 2.8.0

    XMLWordPrintableJSON

Details

    • Bug
    • Status: Closed
    • Major
    • Resolution: Fixed
    • http.jetty-4.1.4
    • http.jetty-4.1.6
    • HTTP Service
    • None

    Description

      Apache Felix Http Jetty: 4.1.4 has embedded commons-io.2.6.jar which is vulnerable to
      "sonatype-2018-0705".
      The vulnerability has been fixed in commons-io: 2.7.

      Related Commons-io JIRA: https://issues.apache.org/jira/browse/IO-556

      Need to update commons-io latest version in Apache Felix HTTP Jetty module.

       

       

      Attachments

        1. sonatype-2018-0705.png
          199 kB
          Akanksha Jain

        Issue Links

          Activity

            People

              cziegeler Carsten Ziegeler
              akanksha88 Akanksha Jain
              Votes:
              0 Vote for this issue
              Watchers:
              2 Start watching this issue

              Dates

                Created:
                Updated:
                Resolved: