Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

[WFLY-15827] Upgrade xerces from fork to Apache standard 2.12.1 #15025

Closed

Conversation

boris-unckel
Copy link
Contributor

Fixes https://issues.redhat.com/browse/WFLY-15827

Reviewers, please find release links in the Jira attached.

@github-actions github-actions bot added the deps-ok Dependencies have been checked, and there are no significant changes label Dec 12, 2021
@boris-unckel
Copy link
Contributor Author

boris-unckel commented Dec 12, 2021

@ropalka @jamezp @jimma The CI is breaking here due to "banned repository url" issues. The local build was running without any issues for a -DallTests run log, same for a small tester app.
Please check if it's possible to go back to Apache standard. Applications gain the possibility to harden against XXE, which is a OWASP Top 10 risk.

@boris-unckel
Copy link
Contributor Author

org.w3c.dom.ElementTraversal is missing :-( No chance for JDK8. Local run was with JDK11.

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
deps-ok Dependencies have been checked, and there are no significant changes
Projects
None yet
1 participant