[jboss-jira] [JBoss JIRA] (WFLY-13337) Upgrade CXF from 3.3.5 to 3.3.6 (Fixes CVE-2020-1954)

Jim Ma (Jira) issues at jboss.org
Tue Apr 7 03:23:00 EDT 2020


     [ https://issues.redhat.com/browse/WFLY-13337?page=com.atlassian.jira.plugin.system.issuetabpanels:all-tabpanel ]

Jim Ma updated WFLY-13337:
--------------------------
    Security:     (was: Red Hat Internal)


> Upgrade CXF from 3.3.5 to 3.3.6 (Fixes CVE-2020-1954)
> -----------------------------------------------------
>
>                 Key: WFLY-13337
>                 URL: https://issues.redhat.com/browse/WFLY-13337
>             Project: WildFly
>          Issue Type: Component Upgrade
>          Components: Web Services
>            Reporter: Brian Stansberry
>            Assignee: Jim Ma
>            Priority: Major
>             Fix For: 19.0.1.Final, 20.0.0.Beta1
>
>
> https://nvd.nist.gov/vuln/detail/CVE-2020-1954 affects CXF 3.3.5; fixed in 3.3.6



--
This message was sent by Atlassian Jira
(v7.13.8#713008)


More information about the jboss-jira mailing list