Netflix / eureka

AWS Service registry for resilient mid-tier load balancing and failover.
Apache License 2.0
12.39k stars 3.74k forks source link

Upgrade to xstream 1.4.20 to fix CVE #1516

Open shyamrox opened 1 year ago

shyamrox commented 1 year ago

https://github.com/Netflix/eureka/issues/1483 Fixes: CVE-2022-40151 CVE-2022-41966

lynxSven commented 8 months ago

+1 for that. Spring cloud still uses Eureka. It should atleast get some vulnerability love