[
https://issues.jboss.org/browse/SRAMP-205?page=com.atlassian.jira.plugin....
]
Eric Wittmann commented on SRAMP-205:
-------------------------------------
The commons-httpclient jar is being pulled in from resteasy-jaxrs. It's probable that
I can just upgrade to the latest version of RE. This is being tracked in s-ramp rather
than s-ramp-ui (as reported in the BZ) because the problem actually lives in
s-ramp-client, which both s-ramp-ui and dtgov-ui use to communicate with the s-ramp
server.
Upgrade commons-httpclient to version 4.x
-----------------------------------------
Key: SRAMP-205
URL:
https://issues.jboss.org/browse/SRAMP-205
Project: S-RAMP
Issue Type: Feature Request
Security Level: Public(Everyone can see)
Reporter: Eric Wittmann
Assignee: Eric Wittmann
Fix For: 0.3.0 - JBPM6 Integration
There is a security vulnerability in version 3.1 of commons-httpclient. We need to try
and upgrade it to 4.x.
--
This message is automatically generated by JIRA.
If you think it was sent incorrectly, please contact your JIRA administrators
For more information on JIRA, see:
http://www.atlassian.com/software/jira