[GitHub] [httpcomponents-client] alicejli commented on pull request #411: Update Apache Commons Codec from 1.11 to 1.15.

2023-02-06 Thread via GitHub
alicejli commented on PR #411: URL: https://github.com/apache/httpcomponents-client/pull/411#issuecomment-1419788638 Thank you for clarifying - that makes sense. -- This is an automated message from the Apache Git Service. To respond to the message, please log on to GitHub and use the URL

[GitHub] [httpcomponents-client] ok2c commented on pull request #411: Update Apache Commons Codec from 1.11 to 1.15.

2023-02-06 Thread via GitHub
ok2c commented on PR #411: URL: https://github.com/apache/httpcomponents-client/pull/411#issuecomment-1419700281 @alicejli We cannot upgrade HttpClient 4.5.x to the latest Commons Codec version due to Java 1.6 compatibility. Commons folks did not consider the security issue severe enough t

[GitHub] [httpcomponents-client] ok2c closed pull request #411: Update Apache Commons Codec from 1.11 to 1.15.

2023-02-06 Thread via GitHub
ok2c closed pull request #411: Update Apache Commons Codec from 1.11 to 1.15. URL: https://github.com/apache/httpcomponents-client/pull/411 -- This is an automated message from the Apache Git Service. To respond to the message, please log on to GitHub and use the URL above to go to the specifi

[GitHub] [httpcomponents-client] suztomo commented on pull request #411: Update Apache Commons Codec from 1.11 to 1.15.

2023-02-06 Thread via GitHub
suztomo commented on PR #411: URL: https://github.com/apache/httpcomponents-client/pull/411#issuecomment-1419665045 You talked about Java 6 compatibility. Can you write down findings here? -- This is an automated message from the Apache Git Service. To respond to the message, please log o

[GitHub] [httpcomponents-client] suztomo commented on pull request #299: Updating project URL to include '-ga' suffix

2023-02-06 Thread via GitHub
suztomo commented on PR #299: URL: https://github.com/apache/httpcomponents-client/pull/299#issuecomment-1419206346 Now it's fixed https://search.maven.org/artifact/org.apache.httpcomponents/httpclient/4.5.14/jar -- This is an automated message from the Apache Git Service. To respond to

[GitHub] [httpcomponents-client] alicejli opened a new pull request, #411: Update Apache Commons Codec from 1.11 to 1.15.

2023-02-06 Thread via GitHub
alicejli opened a new pull request, #411: URL: https://github.com/apache/httpcomponents-client/pull/411 There was a vulnerability found with commons-codec (https://sca.analysiscenter.veracode.com/vulnerability-database/security/sca/vulnerability/sid-22742/summary) that was fixed in v1.13.