dcaegen2-services-kpi-computation-ms vulnerability updates

Description

Version upgrade needed for vulnerability addressal. 

 

Status

Priority

Component name and version

Threat level

Recommended version

Project’s assessment

1

ch.qos.logback : logback-core : 1.3.0-alpha0

8.6
 6.6
 5.9
 

1.2.11

downgrade required

1

com.fasterxml.jackson.core : jackson-databind : 2.11.0

7.5
 7.5
 

2.13.3

 

1

io.undertow : undertow-core : 2.2.14.Final

7.5
 5.3

2.2.17.Final

 

1

org.springframework : spring-beans : 5.3.14

9.8
 9.8

5.3.20

 

1

org.springframework : spring-web : 5.3.14

9.8

5.3.20

 

2

org.springframework : spring-context : 5.3.14

5.3
 

5.3.20

 

 

Activity

Show:

Former user August 2, 2022 at 3:24 PM

Kindly reassign to right member for dev/support

Done

Details

Assignee

Reporter

Labels

Components

Fix versions

Priority

Created July 12, 2022 at 6:18 PM
Updated September 12, 2022 at 4:52 AM
Resolved September 8, 2022 at 7:41 AM