-
-
Notifications
You must be signed in to change notification settings - Fork 10.2k
Closed
Labels
area/securityCategorizes issue or PR as related to securityCategorizes issue or PR as related to securitystale
Description
现在最新版本1.9.1使用的XStream库还是1.4.17,存在下面的漏洞,建议升到最新的XStream库后再发一个Release。
漏洞级别:高危
漏洞名称:XStream < 1.4.18 多个远程代码执行漏洞 (CVE-2021-39139等)
修复方案:
升级XStream到当前最新版本1.4.18
下载地址:https://x-stream.github.io/download.html
Reactions are currently unavailable
Metadata
Metadata
Assignees
Labels
area/securityCategorizes issue or PR as related to securityCategorizes issue or PR as related to securitystale