tuxji commented on pull request #699:
URL: https://github.com/apache/daffodil/pull/699#issuecomment-988884401


   Found more information:
   
   Got security warning on JDom2 2.0.6: CVE-2021-33813 [Issue 
#189](https://github.com/hunterhacker/jdom/issues/189)
   fix setFeature bug and add test case [PR 
#188](https://github.com/hunterhacker/jdom/pull/188)
   
   Looks like the maintainer just got approval from Sonatype to upload the 
2.0.6.1 release, but did not create a tagged release on GitHub (yet?).  Still 
would prefer more traceability of what exactly went into the 2.0.6.1 release 
back to source tag.


-- 
This is an automated message from the Apache Git Service.
To respond to the message, please log on to GitHub and use the
URL above to go to the specific comment.

To unsubscribe, e-mail: [email protected]

For queries about this service, please contact Infrastructure at:
[email protected]


Reply via email to