Skip to content
This repository has been archived by the owner on Nov 26, 2020. It is now read-only.

Posible vulnerability lists not updated #721

Open
next-modnavarro opened this issue Oct 11, 2017 · 0 comments
Open

Posible vulnerability lists not updated #721

next-modnavarro opened this issue Oct 11, 2017 · 0 comments

Comments

@next-modnavarro
Copy link

Hello, I'm trying versioneye enterprise on premise following https://github.com/versioneye/ops_contrib instructions. I've run a scan on my code and dependencies and the results are not showing a vulnerability described in CVE-2017-5929:
QOS.ch Logback before 1.2.0 has a serialization vulnerability affecting the SocketServer and ServerSocketReceiver components.

Maybe I'm missing some update steps and it was my mistake??? I've run versioneye-update before launching the scan

Sign up for free to subscribe to this conversation on GitHub. Already have an account? Sign in.
Labels
None yet
Projects
None yet
Development

No branches or pull requests

1 participant