Skip to content

Vulnerability via dependent jose4j < 0.9.3 #1211

Description

@ittzik

Description of the Issue
Jose4J version used is < 0.9.3 and is vulnerable. See https://nvd.nist.gov/vuln/detail/CVE-2023-31582

Please upgrade to version 0.9.3 or higher.

Versions Used
Java SDK: 4.6.0
Java: openjdk version "17"

Steps to Reproduce
N/A

Error Message, Including Stack Trace
N/A

Activity

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Metadata

Metadata

Labels

enhancementAdded to issues that describes enhancements

Type

No type

Projects

No projects

    Milestone

    No milestone

    Relationships

    None yet

    Development

    No branches or pull requests

    Issue actions