Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

Library upgrades #291

Closed
arantzaetxebarria opened this issue Jun 12, 2023 · 1 comment
Closed

Library upgrades #291

arantzaetxebarria opened this issue Jun 12, 2023 · 1 comment
Assignees
Labels
solved Solution developed and accepted, not yet deployed Type: Enhancement New feature or request
Milestone

Comments

@arantzaetxebarria
Copy link
Collaborator

The following libraries need to be updated, they are outdated or contain other critical vulnerabilities

• Apache Tomcat 7.0.76 (julkaistu 9.3.2017)
• PHP 5.4.16 (julkaistu 6.6.2013)
• Apache 2.4.6 (julkaistu 15.6.2013)
• OpenSSL 1.0.2
• Jquery-ui 1.11.4

The recommendation is to update the components.

In addition, Re3girstry software also uses these, which contain vulnerabilities:

  • log4-1.217.jar
  • zip4j-1.3.2.jar
  • jdom-1.1-jar
  • jstl-1.2.jar
  • mail-1.4.7.jar
@arantzaetxebarria arantzaetxebarria added Type: Enhancement New feature or request under development A solution is being developed labels Jun 12, 2023
@arantzaetxebarria arantzaetxebarria added this to the v2.5.0 milestone Jun 12, 2023
@oruscalleda oruscalleda self-assigned this Jun 28, 2023
@oruscalleda
Copy link
Collaborator

oruscalleda commented Jun 29, 2023

All libraries have been updated without any issues, plus:
Shiro-core to 1.10.1
Shiro-web to 1.8.0
json to 20230227
Jackson-databind to 13.4.2

@oruscalleda oruscalleda added solved Solution developed and accepted, not yet deployed and removed under development A solution is being developed labels Jun 29, 2023
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
solved Solution developed and accepted, not yet deployed Type: Enhancement New feature or request
Projects
None yet
Development

No branches or pull requests

2 participants