[ 
https://issues.apache.org/jira/browse/TOMEE-4103?page=com.atlassian.jira.plugin.system.issuetabpanels:comment-tabpanel&focusedCommentId=17643777#comment-17643777
 ] 

Jonathan Gallimore commented on TOMEE-4103:
-------------------------------------------

This has already done in the tomee-8.x branch: 
[https://github.com/apache/tomee/commit/20e6255df8e36c9d16ef1a669af87259e070101b]

If you can give it a try, and let us know how you get on, that would be very 
appreciated.

> Update woodstox-core to mitigate CVE-2022-40153
> -----------------------------------------------
>
>                 Key: TOMEE-4103
>                 URL: https://issues.apache.org/jira/browse/TOMEE-4103
>             Project: TomEE
>          Issue Type: Dependency upgrade
>          Components: TomEE Core Server
>    Affects Versions: 9.0.0-M8, 8.0.13
>            Reporter: RAJU THANNEERU
>            Priority: Major
>              Labels: CVE
>             Fix For: 9.0.0, 8.0.14
>
>
> Update woodstox-core to mitigate CVE-2022-40153
> https://nvd.nist.gov/vuln/detail/CVE-2022-40153



--
This message was sent by Atlassian Jira
(v8.20.10#820010)

Reply via email to