[
https://issues.apache.org/jira/browse/TINKERPOP-2771?page=com.atlassian.jira.plugin.system.issuetabpanels:all-tabpanel
]
Aaron Coady updated TINKERPOP-2771:
-----------------------------------
Component/s: console
Description:
Apache commons configuration v2.7 has a critical severity security
vulnerability identified here:
[https://nvd.nist.gov/vuln/detail/CVE-2022-33980]
This is resolved in version 2.8.0
was:
Apache commons configuration v2.7 has a medium severity security vulnerability
identified here:
[https://nvd.nist.gov/vuln/detail/CVE-2022-33980]
This is resolved in version 2.8.0
Summary: Critical severity security vulnerabilty in
commons-configuration 2.7 (was: Medium severity security vulnerabilty in
commons-configuration 2.7)
This vulnerability has be moved from medium to critical. I've updated the
content of the issue.
Can I get an estimate as to when this could be delivered in a release please?
> Critical severity security vulnerabilty in commons-configuration 2.7
> --------------------------------------------------------------------
>
> Key: TINKERPOP-2771
> URL: https://issues.apache.org/jira/browse/TINKERPOP-2771
> Project: TinkerPop
> Issue Type: Bug
> Components: console, server
> Affects Versions: 3.6.0
> Reporter: Aaron Coady
> Priority: Major
>
> Apache commons configuration v2.7 has a critical severity security
> vulnerability identified here:
> [https://nvd.nist.gov/vuln/detail/CVE-2022-33980]
>
> This is resolved in version 2.8.0
--
This message was sent by Atlassian Jira
(v8.20.10#820010)