Uploaded image for project: 'Tika'
  1. Tika
  2. TIKA-3491

Upgrade version for TPS: commons-compress to 1.21 in tika-bundle

    XMLWordPrintableJSON

Details

    • Bug
    • Status: Open
    • Major
    • Resolution: Unresolved
    • 1.27
    • None
    • None

    Description

      tika-bundle-1.27 uses commons-compress-1.20.

      There are following vulnerabilities reported in commons-compress-1.20 as per National Vulnerability Database:
      1. CVE-2021-35515
      2. CVE-2021-35516 
      3. CVE-2021-35517
      4. CVE-2021-36090

      commons-compress-1.21 is non-vulnerable version. Please consider upgrading to it in the next release.

      Attachments

        Activity

          People

            Unassigned Unassigned
            shuraut Shubhangi Raut
            Votes:
            0 Vote for this issue
            Watchers:
            1 Start watching this issue

            Dates

              Created:
              Updated: