Thanks to visit codestin.com
Credit goes to github.com

Skip to content
This repository was archived by the owner on May 14, 2025. It is now read-only.

Conversation

@onobc
Copy link
Contributor

@onobc onobc commented May 9, 2024

The updated version (2.9.13) has 1 CVE for its use of json-path 2.6.0.
This is mitigated by the pre-existing override to json-path 2.9.0.

Resolves #5794

The updated version (2.9.13) has 1 CVE for its use of json-path 2.6.0.
This is mitigated by the pre-existing override to json-path 2.9.0.

Resolves spring-attic#5794
@onobc onobc requested a review from corneil May 9, 2024 04:48
@onobc onobc mentioned this pull request May 9, 2024
@corneil corneil merged commit a6da2a4 into spring-attic:main May 9, 2024
@corneil corneil added this to the 2.11.3 milestone May 17, 2024
Sign up for free to subscribe to this conversation on GitHub. Already have an account? Sign in.

Labels

None yet

Development

Successfully merging this pull request may close these issues.

Fix code scanning alert - Spring-Kafka has Java Deserialization vulnerability When Improperly Configured

2 participants