Skip to content

Upgrade nimbus and jetty library versions for CVE#12596

Merged
xiangfu0 merged 1 commit intoapache:masterfrom
xiangfu0:upgrade-nimbus
Mar 7, 2024
Merged

Upgrade nimbus and jetty library versions for CVE#12596
xiangfu0 merged 1 commit intoapache:masterfrom
xiangfu0:upgrade-nimbus

Conversation

@xiangfu0
Copy link
Contributor

@xiangfu0 xiangfu0 commented Mar 7, 2024

  • Upgrade nimbus version to 9.37.3 for CVE-2023-52428
  • Upgrade eclipse.jetty libraries version from 9.4.51.v20230217 to 9.4.54.v20240208 for CVE-2023-36478

@xiangfu0 xiangfu0 added dependencies Pull requests that update a dependency file 0.8.0 cve and removed 0.8.0 labels Mar 7, 2024
@xiangfu0 xiangfu0 merged commit 0a2debf into apache:master Mar 7, 2024
@xiangfu0 xiangfu0 deleted the upgrade-nimbus branch March 7, 2024 22:40
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

cve dependencies Pull requests that update a dependency file

Projects

None yet

Development

Successfully merging this pull request may close these issues.

2 participants