Uploaded image for project: 'OpenNMS'
  1. OpenNMS
  2. NMS-13279

Apache Commons IO Security Update: CVE-2021-29425

    XMLWordPrintable

    Details

    • Sprint:
      Horizon 2021 - Apr 28 - May 12

      Description

      Apache Commons IO has a CVE recommending updating to 2.7 or higher. I've marked this as a minor priority since we do not use the affected API directly (FileNameUtils.normalize) but without auditing everything dependencies do, it's best to upgrade just in case.

        Attachments

          Activity

            People

            Assignee:
            ranger Benjamin Reed
            Reporter:
            ranger Benjamin Reed
            Votes:
            0 Vote for this issue
            Watchers:
            1 Start watching this issue

              Dates

              Created:
              Updated:
              Resolved:

                Git Integration