[ 
https://issues.apache.org/jira/browse/TOMEE-4612?page=com.atlassian.jira.plugin.system.issuetabpanels:all-tabpanel
 ]

Markus Jung resolved TOMEE-4612.
--------------------------------
    Resolution: Fixed

> Neethi 3.2.2
> ------------
>
>                 Key: TOMEE-4612
>                 URL: https://issues.apache.org/jira/browse/TOMEE-4612
>             Project: TomEE
>          Issue Type: Dependency upgrade
>          Components: TomEE Core Server
>            Reporter: RAJU THANNEERU
>            Priority: Major
>             Fix For: 10.1.6
>
>
> We see new high vulnerabilities in neethi 3.2.1 jar
> |[CVE-2026-42402|https://nvd.nist.gov/vuln/detail/CVE-2026-42402]|7.5|high|fixed
>  in 3.2.2|2026-05-07 12:53:20 +0000 
> UTC|[org.apache.neethi_neethi_3.2.1|https://otscan.otxlab.net/api/v1/scan/c0feeaee-6ca0-4d14-98ee-326106af0b99/report/html#sha256:1003b350658808dc00e5e231b31f63a05ea8cf225976543bc7a5b3299e2905e9_org.apache.neethi_neethi_3.2.1]|this
>  image|/usr/local/tomee/lib/neethi-3.2.1.jar|
> |[CVE-2026-42403|https://nvd.nist.gov/vuln/detail/CVE-2026-42403]|7.5|high|fixed
>  in 3.2.2|2026-05-07 12:53:20 +0000 
> UTC|[org.apache.neethi_neethi_3.2.1|https://otscan.otxlab.net/api/v1/scan/c0feeaee-6ca0-4d14-98ee-326106af0b99/report/html#sha256:1003b350658808dc00e5e231b31f63a05ea8cf225976543bc7a5b3299e2905e9_org.apache.neethi_neethi_3.2.1]|this
>  image|/usr/local/tomee/lib/neethi-3.2.1.jar|
> |[CVE-2026-42404|https://nvd.nist.gov/vuln/detail/CVE-2026-42404]|6.5|medium|fixed
>  in 3.2.2|2026-05-07 12:53:20 +0000 
> UTC|[org.apache.neethi_neethi_3.2.1|https://otscan.otxlab.net/api/v1/scan/c0feeaee-6ca0-4d14-98ee-326106af0b99/report/html#sha256:1003b350658808dc00e5e231b31f63a05ea8cf225976543bc7a5b3299e2905e9_org.apache.neethi_neethi_3.2.1]|this
>  image|/usr/local/tomee/lib/neethi-3.2.1.jar|



--
This message was sent by Atlassian Jira
(v8.20.10#820010)

Reply via email to