Uploaded image for project: 'Service Design and Creation'
  1. Service Design and Creation
  2. SDC-1708

fix security vilation CVE-2017-7657

XMLWordPrintable

      LF CLM report identified a vulnerability in the flowing dependency:

      group: org.eclipse.jetty

      Artifact: jetty-http

      this dependency was identified in:

       

       Dependency org.eclipse.jetty:jetty-http:jar:9.0.6.v20130930 located at Module org.openecomp.sdc.onboarding:onboarding-be:war:1.3.0-SNAPSHOT

      Dependency org.eclipse.jetty:jetty-http:jar:9.3.6.v20151106 located at Module org.openecomp.sdc.onboarding:notifications-fe:war:1.3.0-SNAPSHOT

      the closest version with a fix is 9.4.11.v20180605

      Note this may require updating the jetty used in the deployment.

       

       

       

       

            shri4lf shri4lf
            ml636r ml636r
            Votes:
            0 Vote for this issue
            Watchers:
            1 Start watching this issue

              Created:
              Updated:
              Resolved: