Details
-
Fix
-
Status: Released (View Workflow)
-
Medium
-
Resolution: Fixed
-
1.13.15
-
None
-
None
-
CVE-2022-40664
Description
Current Situation
- Currently JOC Cockpit uses org.apache.shiro:shiro-core version 1.9.1
- a vulnerability affects this version,
Desired Behavior
- Due to a vulnerability Issue of older org.apache.shiro:shiro-core releases the JOC Cockpit should use the current version 1.10.0 that fixes the issues.