[ 
https://issues.apache.org/jira/browse/TINKERPOP-2771?page=com.atlassian.jira.plugin.system.issuetabpanels:all-tabpanel
 ]

Aaron Coady updated TINKERPOP-2771:
-----------------------------------
    Component/s: console
    Description: 
Apache commons configuration v2.7 has a critical severity security 
vulnerability identified here:

[https://nvd.nist.gov/vuln/detail/CVE-2022-33980]

 

This is resolved in version 2.8.0

  was:
Apache commons configuration v2.7 has a medium severity security vulnerability 
identified here:

[https://nvd.nist.gov/vuln/detail/CVE-2022-33980]

 

This is resolved in version 2.8.0

        Summary: Critical severity security vulnerabilty in 
commons-configuration 2.7  (was: Medium severity security vulnerabilty in 
commons-configuration 2.7)

This vulnerability has be moved from medium to critical. I've updated the 
content of the issue. 

Can I get an estimate as to when this could be delivered in a release please?

> Critical severity security vulnerabilty in commons-configuration 2.7
> --------------------------------------------------------------------
>
>                 Key: TINKERPOP-2771
>                 URL: https://issues.apache.org/jira/browse/TINKERPOP-2771
>             Project: TinkerPop
>          Issue Type: Bug
>          Components: console, server
>    Affects Versions: 3.6.0
>            Reporter: Aaron Coady
>            Priority: Major
>
> Apache commons configuration v2.7 has a critical severity security 
> vulnerability identified here:
> [https://nvd.nist.gov/vuln/detail/CVE-2022-33980]
>  
> This is resolved in version 2.8.0



--
This message was sent by Atlassian Jira
(v8.20.10#820010)

Reply via email to