Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

Updates version of XStream (fixes CVE-2013-7285 vulnerability) #1113

Merged
merged 1 commit into from Jun 5, 2019

Conversation

jhkuperus
Copy link
Contributor

Our OWASP-tooling identified XStream 1.4.10 to have a vulnerability. Version 1.4.11.1 fixes this vulnerability.

@abuijze abuijze added Priority 1: Must Highest priority. A release cannot be made if this issue isn’t resolved. Status: Resolved Use to signal that work on this issue is done. Type: Vulnerability labels Jun 5, 2019
@abuijze abuijze merged commit 525ecdd into AxonFramework:master Jun 5, 2019
@abuijze abuijze added this to the Release 4.2 milestone Jun 5, 2019
@smcvb smcvb requested a review from abuijze June 5, 2019 13:26
@jhkuperus jhkuperus deleted the feature/upgrade-xstream branch June 5, 2019 13:41
@smcvb smcvb added Type: Dependency Upgrade Use to signal an issue that adjusts the project’s dependencies. Typically used by dependabot only. and removed Type: Vulnerability labels Nov 22, 2019
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
Priority 1: Must Highest priority. A release cannot be made if this issue isn’t resolved. Status: Resolved Use to signal that work on this issue is done. Type: Dependency Upgrade Use to signal an issue that adjusts the project’s dependencies. Typically used by dependabot only.
Projects
None yet
Development

Successfully merging this pull request may close these issues.

None yet

3 participants