-
Type:
Task
-
Status: Closed
-
Priority:
Major
-
Resolution: Fixed
-
Affects Version/s: 2.2.8
-
Fix Version/s: 2.2.10
-
Component/s: None
-
Labels:None
2015-11-23 16:37 GMT-05:00 Mike Kienenberger:
let's upgrade our commons-collections
dependency to 3.2.2 as certain JSF configurations likely present
attack vectors.
- relates to
-
COLLECTIONS-580 Arbitrary remote code execution with InvokerTransformer
-
- Closed
-