servicecatalog / oscm-app

OSCM Asynchronous Provisioning Proxy.
Apache License 2.0
1 stars 3 forks source link

Update com.google.guava #85

Closed GoebelL closed 4 years ago

GoebelL commented 4 years ago

Version Info latest of 2020-07-29

Describe the bug Old Guava version is included that causes VCE indications. Straight upgrading it breaks the APP UI. Please check further options to fix this VCE, e.g. remove, replace the dependency or adapt the UI.

How to Reproduce Check VCE reports.

Observed behavior com.google.guava CVE-2018-10237

Expected behavior No indication