Uploaded image for project: 'WSS4J'
  1. WSS4J
  2. WSS-707

Update Santuario to fix CVE-2023-44483

    XMLWordPrintableJSON

Details

    • Bug
    • Status: Closed
    • Major
    • Resolution: Fixed
    • None
    • 3.0.2, 2.4.3, 2.3.5, 4.0.0
    • None
    • None

    Description

      Versions 4.0.0, 3.0.3, 2.3.4 and 2.2.6 of the Apache XML Security for Java library have been released. A security advisory has been fixed in these releases:

      • CVE-2023-44483: Apache Santuario: Private Key disclosure in debug-log output

      Attachments

        Activity

          People

            coheigea Colm O hEigeartaigh
            coheigea Colm O hEigeartaigh
            Votes:
            0 Vote for this issue
            Watchers:
            1 Start watching this issue

            Dates

              Created:
              Updated:
              Resolved: