You signed in with another tab or window. Reload to refresh your session.You signed out in another tab or window. Reload to refresh your session.You switched accounts on another tab or window. Reload to refresh your session.Dismiss alert
Would it be possible to update jackson to 2.17.1 and wicket to 9.18.0? It's an direct dependency of wiquery-core and CVE-2023-35116 is reported on jackson-databind 2.14.3
The update in the merged pull request #59 solves the following reported CVEs on these dependencies:
1.4
CVE-2023-249982.12.5
CVE-2020-36518, CVE-2021-46877, CVE-2022-42003, CVE-2022-420049.7.0
CVE-2024-27439Would it be possible to update jackson to
2.17.1
and wicket to9.18.0
? It's an direct dependency of wiquery-core and CVE-2023-35116 is reported on jackson-databind2.14.3
And then release a
9.1.0
version of thewicket-9
branch?The text was updated successfully, but these errors were encountered: