jakartaee / jsonp-api

Jakarta JSON Processing
https://eclipse.org/ee4j/jsonp
Other
138 stars 59 forks source link

Eclipse-Parsson - update dependency to version 1.1.4 #409

Closed DeeXilliams closed 4 months ago

DeeXilliams commented 4 months ago

https://nvd.nist.gov/vuln/detail/CVE-2023-4043 jsonp-api has a dependency on Eclipse-Parsson. Update to Eclipse-Parsson 1.1.4 where the CVE has been resolved.

lukasj commented 4 months ago

the api jar has no dependencies other than those from Java SE