[
https://issues.apache.org/jira/browse/TOMEE-4127?focusedWorklogId=834317&page=com.atlassian.jira.plugin.system.issuetabpanels:worklog-tabpanel#worklog-834317
]
ASF GitHub Bot logged work on TOMEE-4127:
-----------------------------------------
Author: ASF GitHub Bot
Created on: 17/Dec/22 17:14
Start Date: 17/Dec/22 17:14
Worklog Time Spent: 10m
Work Description: dblevins merged PR #988:
URL: https://github.com/apache/tomee/pull/988
Issue Time Tracking
-------------------
Worklog Id: (was: 834317)
Time Spent: 50m (was: 40m)
> CXF 3.5.5
> ---------
>
> Key: TOMEE-4127
> URL: https://issues.apache.org/jira/browse/TOMEE-4127
> Project: TomEE
> Issue Type: Dependency upgrade
> Components: TomEE Core Server
> Affects Versions: 9.0.0.RC1
> Reporter: Richard Zowalla
> Assignee: Richard Zowalla
> Priority: Major
> Time Spent: 50m
> Remaining Estimate: 0h
>
> December 13, 2022 - Apache CXF 3.5.5 and 3.4.10 released!
> The Apache CXF team is proud to announce the availability of our latest patch
> releases! Over 9 JIRA issues were fixed for 3.5.5 and 3.4.10. Two new CVEs
> were issued for vulnerabilities fixed in these releases:
> CVE-2022-46363: Apache CXF directory listing / code exfiltration
> CVE-2022-46364: Apache CXF SSRF Vulnerability
--
This message was sent by Atlassian Jira
(v8.20.10#820010)