Skip to content

Apache commons-io version updateΒ #1146

@trcoelho

Description

@trcoelho

By using Spring boot 3.4.2 and Spring Cloud (2024.0.0) one of its dependencies is Apache Commons IO (2.11.0). Any schedule to update to its lates considering that 2.11.0 version got a CVE (https://mvnrepository.com/artifact/commons-io/commons-io/2.11.0)?

More details:
GHSA-78wr-2p64-hpwj

Thanks in advance.

Metadata

Metadata

Assignees

Labels

dependenciesPull requests that update a dependency file

Type

Projects

Milestone

Relationships

None yet

Development

No branches or pull requests

Issue actions