[ 
https://issues.apache.org/jira/browse/FELIX-6391?page=com.atlassian.jira.plugin.system.issuetabpanels:all-tabpanel
 ]

Akanksha Jain updated FELIX-6391:
---------------------------------
    Attachment: sonatype-2018-0705.png

> Vulnerability in org.apache.felix : org.apache.felix.http.jetty : 4.1.4
> -----------------------------------------------------------------------
>
>                 Key: FELIX-6391
>                 URL: https://issues.apache.org/jira/browse/FELIX-6391
>             Project: Felix
>          Issue Type: Bug
>            Reporter: Akanksha Jain
>            Priority: Major
>         Attachments: sonatype-2018-0705.png
>
>
> Apache Felix Http Jetty: 4.1.4 has embedded commons-io.2.6.jar which is 
> vulnerable to 
> "sonatype-2018-0705". 
> The vulnerability has been fixed in commons-io: 2.7.
> Related Commons-io JIRA: https://issues.apache.org/jira/browse/IO-556
> Need to update commons-io latest version in Apache Felix HTTP Jetty module.
>  
>  



--
This message was sent by Atlassian Jira
(v8.3.4#803005)

Reply via email to