Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

Upgraded Primefaces to latest bugfix version 14.0.6 to resolve critical CVE (3.5) #1761

Merged
merged 3 commits into from
Nov 20, 2024

Conversation

tfr42
Copy link
Member

@tfr42 tfr42 commented Nov 13, 2024

This PR fixes a critical issue in primeface CVSS 10 and also

  • upgrades Spring Framework to latest bugfix release
  • upgrades OWASP Maven plugin to latest version

@tfr42 tfr42 added ready console deegree administration console CVE Common Vulnerabilities and Exposures labels Nov 13, 2024
@tfr42 tfr42 added this to the 3.5.9 milestone Nov 13, 2024
@lgoltz lgoltz added the dependencies Pull requests that update a dependency (library) label Nov 18, 2024
@tfr42 tfr42 changed the title Upgraded Primefaces to latest bugfix version 14.0.6 to resolve critical CVE Upgraded Primefaces to latest bugfix version 14.0.6 to resolve critical CVE (3.5) Nov 20, 2024
@copierrj copierrj merged commit e4ea78d into deegree:3.5-main Nov 20, 2024
1 check passed
@lgoltz lgoltz deleted the fix/3.5-primefacesCVE branch November 27, 2024 14:54
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
console deegree administration console CVE Common Vulnerabilities and Exposures dependencies Pull requests that update a dependency (library) ready
Projects
None yet
Development

Successfully merging this pull request may close these issues.

4 participants