Nicolò Mendola created SOLR-16443: ------------------------------------- Summary: Upgrade Jackson to 2.13.4 Key: SOLR-16443 URL: https://issues.apache.org/jira/browse/SOLR-16443 Project: Solr Issue Type: Improvement Security Level: Public (Default Security Level. Issues are Public) Affects Versions: 9.1 Reporter: Nicolò Mendola
Due to actual jackson-databind cve listing CVE-2022-42004 and CVE-2022-42003 the Libary should be updated. [https://nvd.nist.gov/vuln/detail/CVE-2022-42004] https://nvd.nist.gov/vuln/detail/CVE-2022-42003 Perhaps for version 9.1.0 as well as 8.11.2? Best Regards h4. -- This message was sent by Atlassian Jira (v8.20.10#820010) --------------------------------------------------------------------- To unsubscribe, e-mail: issues-unsubscr...@solr.apache.org For additional commands, e-mail: issues-h...@solr.apache.org