Details
-
Dependency upgrade
-
Status: Resolved
-
Major
-
Resolution: Fixed
-
9.0.0
-
None
Description
Looks like there is vulnerability on Jackson, see below links.
https://github.com/FasterXML/jackson-core/pull/827
https://github.com/FasterXML/jackson-core/issues/958
Attachments
Issue Links
- fixes
-
TOMEE-4213 Update snakeyaml version to 2.0 to mitigate CVE-2022-1471
- Resolved
- is a clone of
-
TOMEE-4206 Jackson 2.15.0
- Resolved