tyro / rabbit-amazon-bridge

A service that routes JSON messages back and forth between AWS and rabbitmq
Apache License 2.0
18 stars 6 forks source link

Pinned tomcat-embed-core to 9.0.19 to fix CVE-2019-0232 and CVE-2019-… #56

Closed martin-greber closed 5 years ago

martin-greber commented 5 years ago

https://nvd.nist.gov/vuln/detail/CVE-2019-0232 https://nvd.nist.gov/vuln/detail/CVE-2019-0199

spring-boot-starter-tomcat:2.1.4.RELEASE (latest) is still on tomcat-embed-core:9.0.17