You are viewing a plain text version of this content. The canonical link for it is here.
Posted to issues@zookeeper.apache.org by "Manjunath Mandya Surendrakumar (Jira)" <ji...@apache.org> on 2020/09/30 05:15:00 UTC

[jira] [Commented] (ZOOKEEPER-3933) owasp failing with json-simple-1.1.1.jar: CVE-2020-10663, CVE-2020-7712

    [ https://issues.apache.org/jira/browse/ZOOKEEPER-3933?page=com.atlassian.jira.plugin.system.issuetabpanels:comment-tabpanel&focusedCommentId=17204468#comment-17204468 ] 

Manjunath Mandya Surendrakumar commented on ZOOKEEPER-3933:
-----------------------------------------------------------

Hi, 

Thanks for this fix.

Could you please tell me, when is the fixed version 3.6.3 will be released?

Regards
Manjunath

> owasp failing with json-simple-1.1.1.jar: CVE-2020-10663, CVE-2020-7712
> -----------------------------------------------------------------------
>
>                 Key: ZOOKEEPER-3933
>                 URL: https://issues.apache.org/jira/browse/ZOOKEEPER-3933
>             Project: ZooKeeper
>          Issue Type: Bug
>          Components: security
>    Affects Versions: 3.7.0, 3.5.8, 3.6.2
>            Reporter: Patrick D. Hunt
>            Priority: Blocker
>             Fix For: 3.7.0, 3.5.9, 3.6.3
>
>
> dependency-check is failing with:
> json-simple-1.1.1.jar: CVE-2020-10663, CVE-2020-7712



--
This message was sent by Atlassian Jira
(v8.3.4#803005)