Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

CVE-2023-1436 from jettison 1.5.2/1.5.3 #468

Open
emmansun opened this issue Apr 17, 2023 · 2 comments
Open

CVE-2023-1436 from jettison 1.5.2/1.5.3 #468

emmansun opened this issue Apr 17, 2023 · 2 comments

Comments

@emmansun
Copy link

请升级依赖包jettison 到1.5.4
image

@billschen
Copy link

还有依赖httpClient也要升级!
CVE-2020-13956 5.3 Improper Input Validation vulnerability with Medium severity found

@jqncc
Copy link

jqncc commented Jun 24, 2024

org.codehaus.jettison这啥包?怎么还有人用? 用你们自己的fastjson或者jackson不香吗? 搞得一个项目好几个json库

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
None yet
Projects
None yet
Development

No branches or pull requests

3 participants