Uploaded image for project: 'FOP'
  1. FOP
  2. FOP-3053

Security Vulnerability with Xerces version <= 2.12.1

    XMLWordPrintableJSON

Details

    • Bug
    • Status: Resolved
    • Major
    • Resolution: Fixed
    • 2.7
    • 2.8
    • None
    • None

    Description

      FOP needs to reference Xerces 2.12.2, which fixes vulnerability:

      https://nvd.nist.gov/vuln/detail/CVE-2022-23437 

      FOP 2.7 is still using vulneable Xerces 2.12.1.

      Attachments

        Activity

          People

            ssteiner Simon Steiner
            hugoleco Hugo L R Prioli
            Votes:
            0 Vote for this issue
            Watchers:
            3 Start watching this issue

            Dates

              Created:
              Updated:
              Resolved: