Details
-
Improvement
-
Status: Open
-
Minor
-
Resolution: Unresolved
-
3.4.0
-
None
Description
Currently during yarn-ui build we are using vulnerable version of spring-core-3.1.1.RELEASE.jar which has serveral critical and high vulnerablilites, we need to upgrade to a version 5.3.20+
Attachments
Issue Links
- relates to
-
TEZ-4461 Upgrade spring-core to 5.3.20 in wro4j-maven-plugin
- Open
- links to