Uploaded image for project: 'InsightEdge Platform'
  1. GS-13637

Upgrade to Spring Security 4.2.8 and Spring Framework 4.3.19

    Details

    • Type: Improvement
    • Status: Closed
    • Priority: Medium
    • Resolution: Fixed
    • Affects versions: None
    • Fix versions: 14.0
    • Labels:
      None
    • Platform:
      All
    • Acceptance Test:
      None
    • Sprint:
    • Product:
      XAP
    • Edition:
      Open Source

      Description

      See:
      https://pivotal.io/security/cve-2018-1199
      Today we support Spring Framework 4.3.17 - not affected
      and Spring Security 4.2.3 - affected, need to upgrade, recent version is 4.2.8 (Sep 11, 2018).

      See:
      http://ask.gigaspaces.org/question/51263/is-it-planned-to-fix-security-issue-cve-2018-1199-upgrading-spring-security/

        Attachments

          Activity

            People

            • Votes:
              0 Vote for this issue
              Watchers:
              2 Start watching this issue

              Dates

              • Created:
                Updated:
                Resolved: