[
https://issues.apache.org/jira/browse/NIFI-4912?page=com.atlassian.jira.plugin.system.issuetabpanels:comment-tabpanel&focusedCommentId=16404886#comment-16404886
]
Joseph Witt commented on NIFI-4912:
-----------------------------------
Wanted to understand the CVEs at play:
https://www.cvedetails.com/vulnerability-list/vendor_id-15866/opec-1/Fasterxml.html
> Update jackson version to latest stable
> ---------------------------------------
>
> Key: NIFI-4912
> URL: https://issues.apache.org/jira/browse/NIFI-4912
> Project: Apache NiFi
> Issue Type: Improvement
> Components: Core Framework
> Affects Versions: 1.5.0
> Reporter: Derek Straka
> Assignee: Derek Straka
> Priority: Major
> Labels: CVE, security
> Fix For: 1.6.0
>
>
> The current jackson version is out of date and contains several CVEs as well
> as outstanding bugs. Update to the latest stable version which at the time
> of writing is 2.9.4
--
This message was sent by Atlassian JIRA
(v7.6.3#76005)