Uploaded image for project: 'JOC - JobScheduler Operations Center'
  1. JOC - JobScheduler Operations Center
  2. JOC-1344

Update org.apache.shiro:shiro-core from 1.7.1 to 1.9.1 due to 3rd-party vulnerability issue CVE-2022-32532

    XMLWordPrintable

Details

    • Fix
    • Status: Released (View Workflow)
    • Minor
    • Resolution: Fixed
    • 1.13.10
    • 1.13.14
    • None
    • None
    • CVE-2022-32532

    Description

      Current Situation

      • Currently JOC Cockpit uses org.apache.shiro:shiro-core version 1.7.1
      • a vulnerability affects this version,

      Desired Behavior

      • Due to a vulnerability Issue of older org.apache.shiro:shiro-core releases the JOC Cockpit should use the current version 1.9.1 that fixes the issues.

      Attachments

        Activity

          People

            sp Santiago Aucejo Petzoldt
            sp Santiago Aucejo Petzoldt
            Pramokshi Narawariya Pramokshi Narawariya
            Votes:
            0 Vote for this issue
            Watchers:
            2 Start watching this issue

            Dates

              Created:
              Updated:
              Resolved: