You signed in with another tab or window. Reload to refresh your session.You signed out in another tab or window. Reload to refresh your session.You switched accounts on another tab or window. Reload to refresh your session.Dismiss alert
Story Description:
As reported from Spring boot team, the CVE-2016-1000027 in Spring-web project will be fixed in Spring 6, which depends of the Java 17, so to fix the vulnerability we need to update both versions, Spring and JDK. The patch for JDK 17 was created few months ago in #617
When CVE-2016-1000027 was raised Springboot had declared v5 EOL and had no intention of releasing a fix for v5, later it seams they changed there mind and released a new v5 anyway.
But we still need to move to java17 and step springboot to v6 for #704 but maybe we can close this and do everything in #704.
Story Description:
As reported from Spring boot team, the CVE-2016-1000027 in Spring-web project will be fixed in Spring 6, which depends of the Java 17, so to fix the vulnerability we need to update both versions, Spring and JDK. The patch for JDK 17 was created few months ago in #617
For more informations about, follow the thread below:
spring-projects/spring-framework#24434
The text was updated successfully, but these errors were encountered: