devonfw / devon4j

devonfw Java stack - create enterprise-grade business apps in Java safe and fast
Apache License 2.0
83 stars 87 forks source link

spring4shell and other CVE fixes required #551

Closed hohwille closed 2 years ago

hohwille commented 2 years ago

Criticality:

critical (9.8)

CVE-Link or steps to reproduce:

https://nvd.nist.gov/vuln/detail/CVE-2022-22965

Also guava, CXF and jackson need updates.

hohwille commented 2 years ago

Updates: