【问题标题】:Vulnerability fix for Apache Commons Text with wso2 carbon libraries使用 wso2 碳库修复 Apache Commons Text 的漏洞
【发布时间】:2022-10-24 01:37:40
【问题描述】:

我正在寻找有关最近漏洞(https://blogs.apache.org/security/entry/cve-2022-42889)的建议,该漏洞也来自从(https://github.com/wso2/product-is/releases/tag/v5.11.0)下载的 wso2 IS 5.11 二进制文件以及我们在自定义插件中使用的碳库,例如:

<groupId>org.wso2.carbon.identity.framework</groupId><artifactId>org.wso2.carbon.identity.mgt</artifactId>
<version>5.18.187</version>

<groupId>org.wso2.carbon.identity.framework</groupId>
<artifactId>org.wso2.carbon.identity.application.authentication.framework</artifactId>
<version>5.18.187</version>

<groupId>org.wso2.carbon.identity.framework</groupId>
<artifactId>org.wso2.carbon.identity.provisioning</artifactId>
<version>5.18.187</version>

是否有任何与 wso2 IS v5.11 兼容的升级?

【问题讨论】:

    标签: wso2 wso2-identity-server


    【解决方案1】:

    对于此类安全问题,请按照 [1] 中的说明发送电子邮件至 security@wso2.com。

    [1]https://wso2.com/security

    【讨论】:

      猜你喜欢
      • 1970-01-01
      • 1970-01-01
      • 1970-01-01
      • 2020-11-14
      • 1970-01-01
      • 2021-08-14
      • 2016-08-27
      • 2021-09-06
      • 1970-01-01
      相关资源
      最近更新 更多