Details
-
Dependency upgrade
-
Status: Resolved
-
Major
-
Resolution: Fixed
-
8.0.14
-
None
Description
Looks like there is vulnerability on Jackson, see below links.
https://github.com/FasterXML/jackson-core/pull/827
https://github.com/FasterXML/jackson-core/issues/958
Attachments
Issue Links
- fixes
-
TOMEE-4194 Update snakeyaml version to 2.0 to mitigate CVE-2022-1471
- Resolved
- is cloned by
-
TOMEE-4212 Jackson 2.15.0
- Resolved
- links to