You are viewing a plain text version of this content. The canonical link for it is here.
Posted to issues@maven.apache.org by "Sylwester Lachiewicz (Jira)" <ji...@apache.org> on 2021/08/22 20:01:00 UTC
[jira] [Commented] (DOXIATOOLS-62) Upgrade Doxia to 1.10
[ https://issues.apache.org/jira/browse/DOXIATOOLS-62?page=com.atlassian.jira.plugin.system.issuetabpanels:comment-tabpanel&focusedCommentId=17402869#comment-17402869 ]
Sylwester Lachiewicz commented on DOXIATOOLS-62:
------------------------------------------------
To 1.10 [ed0ef9332798df170fdcefba6753cb12214e0640|https://gitbox.apache.org/repos/asf?p=maven-doxia-converter.git;a=commit;h=ed0ef9332798df170fdcefba6753cb12214e0640]
> Upgrade Doxia to 1.10
> ---------------------
>
> Key: DOXIATOOLS-62
> URL: https://issues.apache.org/jira/browse/DOXIATOOLS-62
> Project: Maven Doxia Tools
> Issue Type: Task
> Components: Doxia Converter
> Reporter: Sylwester Lachiewicz
> Assignee: Sylwester Lachiewicz
> Priority: Minor
> Fix For: doxia-converter-1.3
>
>
> The following vulnerabilities are fixed with an upgrade
> * to 1.9.1
> ** DOXIASITETOOLS-215] - avoid reporting plugins pulling in Struts 1.3.8 jar
> * to 1.9:
> [https://snyk.io/vuln/SNYK-JAVA-ORGAPACHEHTTPCOMPONENTS-30644]
> [https://snyk.io/vuln/SNYK-JAVA-ORGAPACHEHTTPCOMPONENTS-30645]
> [https://snyk.io/vuln/SNYK-JAVA-ORGAPACHEHTTPCOMPONENTS-30646]
> [https://snyk.io/vuln/SNYK-JAVA-ORGAPACHEHTTPCOMPONENTS-30647]
> [https://snyk.io/vuln/SNYK-JAVA-ORGAPACHEHTTPCOMPONENTS-31517]
> [https://snyk.io/vuln/SNYK-JAVA-ORGAPACHEXMLGRAPHICS-30070]
> [https://snyk.io/vuln/SNYK-JAVA-ORGAPACHEXMLGRAPHICS-31031]
> [https://snyk.io/vuln/SNYK-JAVA-ORGAPACHEXMLGRAPHICS-31389]
> [https://snyk.io/vuln/SNYK-JAVA-ORGAPACHEXMLGRAPHICS-31392]
> [https://snyk.io/vuln/SNYK-JAVA-ORGAPACHEXMLGRAPHICS-32304]
> [https://snyk.io/vuln/SNYK-JAVA-XALAN-31385]
--
This message was sent by Atlassian Jira
(v8.3.4#803005)