Skip to content

Conversation

@sgrampone
Copy link
Contributor

Issue:207172

Bump jersey library to version 2.34 for javaEE and to version 3.0.17 for jakarta due to CVE

CVE-2025-12383

#GXSEC

@sgrampone sgrampone requested a review from iroqueta November 21, 2025 17:49
@sgrampone sgrampone added the dependencies Pull requests that update a dependency file label Nov 21, 2025
@genexusbot
Copy link
Collaborator

Cherry pick to beta failed, 1 conflicted file in commit ea7eeb4
  • pom.xml

1 similar comment
@genexusbot
Copy link
Collaborator

Cherry pick to beta failed, 1 conflicted file in commit ea7eeb4
  • pom.xml

@genexusbot
Copy link
Collaborator

Manual cherry pick to beta success

@sgrampone sgrampone merged commit 724fb00 into master Nov 25, 2025
10 checks passed
@sgrampone sgrampone deleted the fix/bump-jersey-core branch November 25, 2025 13:53
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

bot closed dependencies Pull requests that update a dependency file

Projects

None yet

Development

Successfully merging this pull request may close these issues.

4 participants