qunarcorp / bistoury

Bistoury是去哪儿网的java应用生产问题诊断工具,提供了一站式的问题诊断方案
GNU General Public License v3.0
4.02k stars 825 forks source link

There is a vulnerability in Apache Tomcat 7.0.30,upgrade recommended #130

Open QiAnXinCodeSafe opened 3 years ago

QiAnXinCodeSafe commented 3 years ago

https://github.com/qunarcorp/bistoury/blob/b83b87032c3a394df31300a4fe3a1123cf6d7917/pom.xml#L90

CVE-2020-1938 CVE-2017-5648 CVE-2016-8735 CVE-2014-0050 CVE-2017-12615

Recommended upgrade version:7.0.108