f2par0 opened a new pull request, #692: URL: https://github.com/apache/syncope/pull/692
3 CVEs detected on this branch needed an fix. Upgrade to cxf 3.5.6 , spring 5.3.33 , spring security to 5.7.12 and owasp-java-html-sanitizer to 20211018.1 fix them. Unit tests are stable, and our integration tests did not show regression. -- This is an automated message from the Apache Git Service. To respond to the message, please log on to GitHub and use the URL above to go to the specific comment. To unsubscribe, e-mail: dev-unsubscr...@syncope.apache.org For queries about this service, please contact Infrastructure at: us...@infra.apache.org