You are viewing a plain text version of this content. The canonical link for it is here.
Posted to issues@commons.apache.org by "I-Min Mau (JIRA)" <ji...@apache.org> on 2016/05/08 22:18:12 UTC

[jira] [Created] (IO-508) Veracode static scan still shows 1 very high OS Command injection in commons-io-2.4.jar

I-Min Mau created IO-508:
----------------------------

             Summary: Veracode static  scan still shows 1 very high OS Command injection in commons-io-2.4.jar
                 Key: IO-508
                 URL: https://issues.apache.org/jira/browse/IO-508
             Project: Commons IO
          Issue Type: Bug
    Affects Versions: 2.4
         Environment: Linux
            Reporter: I-Min Mau


We use commons-io-2.4.jar. Recently our veracode scan points cross site scripting vulnerability at org/.../commons/io/FileUtils.java 2095. Do we have a recent version that addresses this issue



--
This message was sent by Atlassian JIRA
(v6.3.4#6332)