Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

Patch Untrusted Java Deserialization #619

Open
ndegwamartin opened this issue Mar 9, 2023 · 1 comment
Open

Patch Untrusted Java Deserialization #619

ndegwamartin opened this issue Mar 9, 2023 · 1 comment
Labels

Comments

@ndegwamartin
Copy link
Contributor

This issue tracks the issue https://github.com/opensrp/opensrp-server-core/security/code-scanning/245

This fix might need to await a patch from Spring given there's LTS support for Spring 5.3 till late in 2024 https://endoflife.date/spring-framework.

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
Projects
None yet
Development

No branches or pull requests

1 participant