Issues
Upgrade dom4j to latest version
Fixed
Description
Acceptance / Success Criteria
dom4j
artifact updated to latest versionSmoke tests passing
Karaf features files manually checked and updated to avoid runtime breakage
Lucidchart Diagrams
Details
Assignee
Benjamin ReedBenjamin ReedReporter
Jeff GehlbachJeff GehlbachHB Grooming Date
Aug 29, 2022HB Backlog Status
Refined BacklogFD#
1334Story Points
1Components
Sprint
NonePriority
Minor
Details
Details
Assignee
Benjamin Reed
Benjamin ReedReporter
Jeff Gehlbach
Jeff GehlbachHB Grooming Date
Aug 29, 2022
HB Backlog Status
Refined Backlog
FD#
1334
Story Points
1
Components
Sprint
None
Priority
PagerDuty
PagerDuty
PagerDuty
Created August 29, 2022 at 8:08 PM
Updated June 27, 2023 at 9:45 PM
Resolved August 30, 2022 at 3:53 PM
Activity
Show:
Gabriela LopezMarch 9, 2023 at 7:30 PM
InfoSec Risk Assessment
CVSS 7.8 x low likelihood .5 = 3.9 low
Benjamin ReedAugust 30, 2022 at 3:53 PM
Merged to foundation-2019
We have a transitive dependency via Hibernate core on
dom4j-1.5.1.
The latter needs upgrading to mitigate against an XXE (XML External Entity) vulnerability.