Skip to content

4.0.x branch has reported CVEs in Maven Central (CVE-2017-5929 and CVE-2022-45688) #229

Closed
@ricardozanini

Description

@ricardozanini

What happened:
See https://mvnrepository.com/artifact/io.serverlessworkflow/serverlessworkflow-api/4.0.3.Final

CVEs:

Anything else we need to know?:
Also, we need to cherry-pick the last CVE fixed here #193

Environment:

  • Specification version used:

Metadata

Metadata

Assignees

Labels

bugSomething isn't workingsecurity fixSecurity fix generated by WhiteSource

Type

No type

Projects

No projects

Milestone

No milestone

Relationships

None yet

Development

No branches or pull requests

Issue actions