singleton icon indicating copy to clipboard operation
singleton copied to clipboard

[BUG][Java Client][Security] Please upgrade dependency libraries to latest version:com.fasterxml.jackson.core:jackson-databind(2.15.2)

Open lyiyu66 opened this issue 1 year ago • 2 comments

commit: f24e60bbf3271b17a73178bbd51553d5e4c2ef81 In Singleton Java Client build, below dependency library is out of date, please upgrade it to latest version:

com.fasterxml.jackson.core:jackson-databind(2.15.2): Medium

CVE-2023-35116

lyiyu66 avatar Dec 18 '23 09:12 lyiyu66

The library's version has been upgraded to 2.16.0 in PR https://github.com/vmware/singleton/pull/2851, and 2.16.0 has no security issue, just need publish a new pattern package build including this change. @renligeng Please help publish.

huihuiw01 avatar Jan 09 '24 09:01 huihuiw01

New version https://repo1.maven.org/maven2/com/vmware/singleton/singleton-i18n-patterns-core/0.5.16/ has been published by @renligeng on 2024-01-15.

huihuiw01 avatar Mar 07 '24 03:03 huihuiw01