Uploaded image for project: 'mod-source-record-manager'
  1. mod-source-record-manager
  2. MODSOURMAN-651

cql2pgjson, Vertx 4.2.2, JUnit 4.13.2

    XMLWordPrintable

Details

    • Folijet Sprint 129
    • 0
    • Folijet
    • Lotus R1 2022
    • Third party component integration

    Description

      Remove cql2pgjson dependency.

      Update Vert.x from 4.2.1 to 4.2.2.

      Update JUnit from 4.13 to 4.13.2.

      This fixes these vulnerabilities:

      cql2pgjson: "MITM attack http maven repository" RMB-823 https://maven.apache.org/docs/3.8.1/release-notes.html#cve-2021-26291

      Vert.x/Netty: "HTTP request smuggling" https://nvd.nist.gov/vuln/detail/CVE-2021-43797

      JUnit: "TemporaryFolder local information disclosure" https://nvd.nist.gov/vuln/detail/CVE-2020-15250

      TestRail: Results

        Attachments

          Issue Links

            Activity

              People

                julianladisch Julian Ladisch
                julianladisch Julian Ladisch
                Votes:
                0 Vote for this issue
                Watchers:
                2 Start watching this issue

                Dates

                  Created:
                  Updated:
                  Resolved:

                  TestRail: Runs

                    TestRail: Cases