WPS icon indicating copy to clipboard operation
WPS copied to clipboard

Use newer BeanShell 2.0b6

Open stain opened this issue 8 years ago • 2 comments

This fixes the possibly remote code execution security vulnerability CVE-2016-2510

See https://github.com/beanshell/beanshell/releases/tag/2.0b6 for details.

(2.0b6 should be backwards compatible with 2.0b4 - however it is released under the Apache License 2.0 - see NOTICE and LICENSE at https://github.com/beanshell/beanshell)

stain avatar Jul 12 '16 21:07 stain

Thanks for this, the tests are failing, though. Seems to be a maven problem . Also note that we will need a signed Contributors Licence Agreement from you before we can accept this PR. You can find more info here: http://52north.org/about/licensing/cla-guidelines

bpross-52n avatar Jul 13 '16 07:07 bpross-52n

I don't consider my small change copyrightable as a Work, so feel free to apply the suggested changes manually without an CLA.

I don't know how to fix this error:

Existing NOTICE file '/home/travis/build/52North/WPS/NOTICE' doesn't match expected NOTICE file: /home/travis/build/52North/WPS/target/NOTICE.expected -> [Help 1]

stain avatar Jul 13 '16 11:07 stain