Details
-
Improvement
-
Status: Resolved
-
Major
-
Resolution: Fixed
-
0.9
-
None
Description
This is a security fix for a vulnerability in Apache Maven pom.xml file(s).
The build files indicate that this project is resolving dependencies over HTTP instead of HTTPS. This leaves build vulnerable to allowing a Man in the Middle (MITM) attackers to execute arbitrary code on local computer or CI/CD system.