Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

ACTION REQUIRED: Critical Vulnerability Detected Please Fix ASAP #1666 #1667

Merged
merged 1 commit into from
Mar 13, 2024

Conversation

hchen99
Copy link
Contributor

@hchen99 hchen99 commented Mar 13, 2024

No description provided.

@hchen99 hchen99 linked an issue Mar 13, 2024 that may be closed by this pull request
@sharmeye sharmeye merged commit da0ddfc into master Mar 13, 2024
7 checks passed
@irowebbn
Copy link
Contributor

How can we know that jar that was committed actually has the JUnit patch?

@sharmeye
Copy link
Contributor

@irowebbn, thanks for the question. If this is about the JUnit vulnerability CVE-2020-15250, that's a non-issue here because the bsaf library isn't being used in Trick in any way that the vulnerability could be exploited. Also, our pom file uses the patched version for JUnit already. I think we're good here, but thanks for the sanity check.

@hchen99 hchen99 deleted the 1666-critical-vulnerability-detected branch March 20, 2024 14:08
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
None yet
Projects
None yet
Development

Successfully merging this pull request may close these issues.

ACTION REQUIRED: Critical Vulnerability Detected Please Fix ASAP
3 participants