less4j icon indicating copy to clipboard operation
less4j copied to clipboard

CVE-2014-0114

Open Pytry opened this issue 8 years ago • 1 comments

Less4j depends on commons-beanutils:commons-beanutils:1.8.3 which has a vulnerqbility s reported by the NVD. At the moment, there is no released version of commons-beanutils that is not vulnerable. This is related to Issue 346 since it is also being caused by the same dependency, but hte vulnerability is different.

Issue 346: https://github.com/SomMeri/less4j/issues/346

NVD Report: https://web.nvd.nist.gov/view/vuln/detail?vulnId=CVE-2014-0114

Pytry avatar Dec 05 '16 21:12 Pytry

Duplicate of #346

robertoschwald avatar Oct 05 '18 08:10 robertoschwald