Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

xstream 1.4.19 vulnerability #3006

Closed
arustamov opened this issue Jan 5, 2023 · 4 comments
Closed

xstream 1.4.19 vulnerability #3006

arustamov opened this issue Jan 5, 2023 · 4 comments

Comments

@arustamov
Copy link
Contributor

According to https://devhub.checkmarx.com/cve-details/CVE-2022-41966. So worth bumping 1.4.20

@wakaleo
Copy link
Member

wakaleo commented Jan 7, 2023

Thanks for spotting this.

@willb611
Copy link

willb611 commented Feb 24, 2023

Does it not also need updating for the gradle build ?
https://github.com/serenity-bdd/serenity-core/blob/main/gradle.properties#L23 It's still referring to 1.4.19 version of xstream

@wakaleo
Copy link
Member

wakaleo commented Feb 24, 2023

We don't use the Gradle build.

@wakaleo
Copy link
Member

wakaleo commented Mar 29, 2023

Fixed.

@wakaleo wakaleo closed this as completed Mar 29, 2023
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
None yet
Projects
None yet
Development

No branches or pull requests

3 participants