GIScience / openrouteservice

🌍 The open source route planner api with plenty of features.
https://openrouteservice.org
GNU General Public License v3.0
1.35k stars 386 forks source link

CVE-2024-34750 #1814

Closed joewragg closed 23 hours ago

joewragg commented 3 weeks ago

Scope

pom.xml

Report Link

https://avd.aquasec.com/nvd/2024/cve-2024-34750/

Dependency affected

org.apache.tomcat.embed:tomcat-embed-core (ors.jar)

Proposed solution / further info

Library Vulnerability Severity Status Installed Version Fixed Version Title
org.apache.tomcat.embed:tomcat-embed-core (ors.jar) CVE-2024-34750 HIGH fixed 10.1.20 11.0.0-M21, 10.1.25, 9.0.90 tomcat: Improper Handling of Exceptional Conditions
Link