jiaqi / jmxterm

Interactive command line JMX client
http://docs.cyclopsgroup.org/jmxterm
Apache License 2.0
517 stars 154 forks source link

commons-text CVE-2022-42889 #106

Closed thalesvalias closed 1 year ago

thalesvalias commented 1 year ago

Hi, I'm sorry for raising a ticket here, didn't know where else to reach out to the jmxterm contributors.

I noticed the commons-text lib was updated recently to get rid of the recently found CVE-2022-42889. Is a new official version release coming (1.0.4 or 1.1.0) or should I just build a local version (jar) myself?

https://github.com/jiaqi/jmxterm/commit/778eb8f5ddbfb596ef3c90b2873d30a37c16e3ce

Thanks

jiaqi commented 1 year ago

1.0.4 was just released.