-
Notifications
You must be signed in to change notification settings - Fork 27
Closed
Labels
Priority: CriticalThis should be dealt with ASAP. Not fixing this issue would be a serious error.This should be dealt with ASAP. Not fixing this issue would be a serious error.dependenciesPull requests that update a dependency filePull requests that update a dependency file
Description
Would it be possible to create a new release that includes the version update to commons-text so that the following CVE no longer appears in projects that use your library (fat jars): https://avd.aquasec.com/nvd/2022/cve-2022-42889/
Metadata
Metadata
Assignees
Labels
Priority: CriticalThis should be dealt with ASAP. Not fixing this issue would be a serious error.This should be dealt with ASAP. Not fixing this issue would be a serious error.dependenciesPull requests that update a dependency filePull requests that update a dependency file