[ 
https://issues.apache.org/jira/browse/SLING-2802?page=com.atlassian.jira.plugin.system.issuetabpanels:comment-tabpanel&focusedCommentId=14005893#comment-14005893
 ] 

Simone Tripodi commented on SLING-2802:
---------------------------------------

Thanks to you for applying the patch [~cziegeler]!
I just wanted to let you know that Commons has released version 
[1.3.1|http://commons.apache.org/proper/commons-fileupload/changes-report.html#a1.3.1]
 of commons-fileupload which contains the fix for _CVE-2014-0050_

HTH!

> Upgrade Apache Commons-FileUpload to v1.3
> -----------------------------------------
>
>                 Key: SLING-2802
>                 URL: https://issues.apache.org/jira/browse/SLING-2802
>             Project: Sling
>          Issue Type: Improvement
>          Components: Extensions
>            Reporter: Simone Tripodi
>            Assignee: Carsten Ziegeler
>         Attachments: SLING-2802.patch
>
>
> Apache Commons-FileUpload v1.3 has just been 
> [announced|http://markmail.org/message/xwbtukcaqikfjb32], it would worth 
> upgrading its dependency given the changelist



--
This message was sent by Atlassian JIRA
(v6.2#6252)

Reply via email to