Details

    • Type: Enhancement
    • Status: Resolved (View Workflow)
    • Priority: Major
    • Resolution: Done
    • Affects Version/s: None
    • Fix Version/s: 4.5.0.Final
    • Component/s: None
    • Labels:
      None

      Description

      Resteasy is using mixed of both `org.codehaus.jackson.* ` (very old version - 1.9.13) and `com.fasterxml.jackson.*` (new version -2.10.1) artifacts, see here and here

      Checking at Maven Repository, almost every artifact from `org.codehaus.jackson` is moved under `com.fasterxml.jackson` and on top of it, `org.codehaus.jackson` v1.9.13 has security vulnerabilities (e.g. jackson-mapper-asl) see: https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2017-7525

      This is to cleanup the project from using `org.codehaus.jackson` artifacts to `com.fasterxml.jackson`

        Gliffy Diagrams

          Attachments

            Activity

              People

              • Assignee:
                asoldano Alessio Soldano
                Reporter:
                vaibhpatel Vaibhav Patel
              • Votes:
                0 Vote for this issue
                Watchers:
                1 Start watching this issue

                Dates

                • Created:
                  Updated:
                  Resolved: