Skip to content

[FP]: Release 8.1.0 is throwing a lot of old Springboot Framework CVEs against spring-retry #5450

@rseeton

Description

@rseeton

Package URl

pkg:maven/org.springframework.retry/[email protected]

CPE

cpe:2.3:a:pivotal_software:spring_framework:1.3.3:*:*:*:*:*:*:*

CVE

CVE-2018-1270

ODC Integration

{"label"=>"CLI"}

ODC Version

8.1.0

Description

This may be an issue with 8.1.0, as we don't see this with the 8.0.2 package and the relevant CVE has not changed June 2022.

There are a number of other/relate issues reported against the spring-retry-1.3.3.jar in our package.

(Retrying after failed processing of initial ticket)

Metadata

Metadata

Assignees

No one assigned

    Labels

    Type

    No type

    Projects

    No projects

    Milestone

    Relationships

    None yet

    Development

    No branches or pull requests

    Issue actions