Unidata / thredds

THREDDS Data Server v4.6
https://www.unidata.ucar.edu/software/tds/v4.6/index.html
265 stars 179 forks source link

suppress several spring-core CVEs that don't affect 4.6.x #1395

Closed haileyajohnson closed 2 years ago

haileyajohnson commented 2 years ago

CVE-2022-22965 - we don't use JDK9+ CVE-2022-22968 - we don't use disallowedFields for DataBinder