Uploaded image for project: 'Tika'
  1. Tika
  2. TIKA-2801

Tika includes 2 vulnerable components

    XMLWordPrintableJSON

Details

    • Task
    • Status: Resolved
    • Critical
    • Resolution: Fixed
    • 1.20
    • 1.21
    • parser
    • None

    Description

      Maven audit plugin reports 2 vulnerable components:

      com.google.guava:guava:jar:17.0:compile

      com.google.protobuf:protobuf-java:jar:2.5.0:compile

      Maybe it worth to add audit plugin to the build/release?

      mvn org.sonatype.ossindex.maven:ossindex-maven-plugin:audit -f pom.xml

      Attachments

        Issue Links

          Activity

            People

              tallison Tim Allison
              solomax Maxim Solodovnik
              Votes:
              0 Vote for this issue
              Watchers:
              3 Start watching this issue

              Dates

                Created:
                Updated:
                Resolved: