We read every piece of feedback, and take your input very seriously.
To see all available qualifiers, see our documentation.
Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.
By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.
Already on GitHub? Sign in to your account
org.json:json:20220924
Hello All,
Please find that CVE-2022-45688 is being reported for org.json:json:20220924
Even though the description in the above link shows a different CPE mapping hutool:5.8.10
hutool:5.8.10
The issue-comment clarifies that the correct OSS lib is org.json:json:20220924
Hence requesting you to update
+- com.sap.cloud.security:env:jar:2.13.6:compile | +- org.json:json:jar:20220924:compile
Thanks Sourabh
The text was updated successfully, but these errors were encountered:
Hi @sourabhsparkala,
We are not affected by this CVE https://github.com/SAP/cloud-security-xsuaa-integration/blob/main-2.x/etc/suppression.xml#L7
We keep all our dependencies always up to date, therefore it will be update in the next release anyway.
Kind Regards, Liga
Sorry, something went wrong.
No branches or pull requests
Hello All,
Please find that CVE-2022-45688 is being reported for
org.json:json:20220924
Even though the description in the above link shows a different CPE mapping
hutool:5.8.10
The issue-comment clarifies that the correct OSS lib is
org.json:json:20220924
Hence requesting you to update
Thanks
Sourabh
The text was updated successfully, but these errors were encountered: