Description
Activemq has tomcat-websocket-api-8.0.53.jar dependency.
This jar is vulnerable to below CVE's: CVE-2016-5388, CVE-2016-5425,CVE-2017-6056.
Ref: https://nvd.nist.gov/vuln/detail/CVE-2016-5388
This jar needs to be updated to 9.0.21 or latest available.
Attachments
Issue Links
- links to