Details
-
Dependency upgrade
-
Status: Resolved
-
Major
-
Resolution: Fixed
-
9.0.0.RC1, 8.0.13
Description
Update Apache CXF versions to mitigate CVE-2022-46364 and CVE-2022-46363
https://nvd.nist.gov/vuln/detail/CVE-2022-46364
https://nvd.nist.gov/vuln/detail/CVE-2022-46363
Attachments
Issue Links
- relates to
-
TOMEE-4126 CXF 3.4.10
- Resolved
-
TOMEE-4127 CXF 3.5.5
- Resolved