Uploaded image for project: 'Infinispan'
  1. Infinispan
  2. ISPN-14437

Update XStream to 1.4.20 to fix CVEs

This issue belongs to an archived project. You can view it, but you can't modify it. Learn more

XMLWordPrintable

    https://x-stream.github.io/CVE-2022-41966.html (probably not affected because NO_REFERENCES is in use?)

    https://x-stream.github.io/CVE-2022-40151.html

     

    https://x-stream.github.io/changes.html#1.4.20

     

    PS: Came here from Keycloak for which trivy reports issues.

            ttarrant@redhat.com Tristan Tarrant
            falko.modler@t-systems.com Falko Modler (Inactive)
            Archiver:
            rhn-support-adongare Amol Dongare

              Created:
              Updated:
              Resolved:
              Archived: