demba90 / owasp-esapi-java

Automatically exported from code.google.com/p/owasp-esapi-java
Other
0 stars 0 forks source link

upgrade commons collections? #346

Open GoogleCodeExporter opened 8 years ago

GoogleCodeExporter commented 8 years ago
Can you please upgrade the commons collections dependency used by this library?

Collections versions 3.2.1 and 4.0 are considered vulnerable by owasp's 
dependency vulnerability scanner.

Original issue reported on code.google.com by kilob...@gmail.com on 15 Mar 2016 at 3:49

GoogleCodeExporter commented 8 years ago
4.1 and 3.2.2 are good options.

Original comment by kilob...@gmail.com on 15 Mar 2016 at 3:50