Skip to content

Update tomcat-embed-jasper to from 9.0.104 to 9.0.105 to suppress alert about CVE-2025-46701#5181

Merged
dorian-burihabwa-sonarsource merged 1 commit intomasterfrom
mend-tomcat
Jun 4, 2025
Merged

Update tomcat-embed-jasper to from 9.0.104 to 9.0.105 to suppress alert about CVE-2025-46701#5181
dorian-burihabwa-sonarsource merged 1 commit intomasterfrom
mend-tomcat

Conversation

@tomasz-tylenda-sonarsource
Copy link
Copy Markdown
Contributor

@tomasz-tylenda-sonarsource tomasz-tylenda-sonarsource commented Jun 3, 2025

@hashicorp-vault-sonar-prod hashicorp-vault-sonar-prod Bot changed the title Update tomcat-embed-jasper to from 9.0.104 to 9.0.105 to suppress ale… SONARJAVA-5608 Update tomcat-embed-jasper to from 9.0.104 to 9.0.105 to suppress ale… Jun 3, 2025
@tomasz-tylenda-sonarsource tomasz-tylenda-sonarsource changed the title SONARJAVA-5608 Update tomcat-embed-jasper to from 9.0.104 to 9.0.105 to suppress ale… Update tomcat-embed-jasper to from 9.0.104 to 9.0.105 to suppress alert Jun 3, 2025
@tomasz-tylenda-sonarsource tomasz-tylenda-sonarsource changed the title Update tomcat-embed-jasper to from 9.0.104 to 9.0.105 to suppress alert Update tomcat-embed-jasper to from 9.0.104 to 9.0.105 to suppress alert about CVE-2025-46701 Jun 3, 2025
@sonarqube-next
Copy link
Copy Markdown

sonarqube-next Bot commented Jun 3, 2025

Copy link
Copy Markdown
Contributor

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

Thanks for the change. I see that JspC's implementation of getUseNonstandardTagOptimizations returns some value but since this object is not meant to be used as anything else than a placeholder, it should be fine.

@dorian-burihabwa-sonarsource dorian-burihabwa-sonarsource merged commit 2460168 into master Jun 4, 2025
19 checks passed
@dorian-burihabwa-sonarsource dorian-burihabwa-sonarsource deleted the mend-tomcat branch June 4, 2025 09:20
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

2 participants