[
https://issues.apache.org/jira/browse/TINKERPOP-3051?page=com.atlassian.jira.plugin.system.issuetabpanels:all-tabpanel
]
Cole Greer closed TINKERPOP-3051.
---------------------------------
Fix Version/s: 3.6.8
3.7.3
Assignee: Cole Greer
Resolution: Fixed
Resolved by CTR:
https://github.com/apache/tinkerpop/commit/9c394637e8d4ac865a56711635db2e94e92301be
> security vulnerability in logback-classic
> -----------------------------------------
>
> Key: TINKERPOP-3051
> URL: https://issues.apache.org/jira/browse/TINKERPOP-3051
> Project: TinkerPop
> Issue Type: Bug
> Components: console
> Affects Versions: 3.6.6
> Reporter: Tal Ron
> Assignee: Cole Greer
> Priority: Blocker
> Fix For: 3.6.8, 3.7.3
>
>
> logback-classic version used is: 1.2.11 -
> [CVE-2023-6378|https://github.com/advisories/GHSA-vmq6-5m68-f53m]
> [https://mvnrepository.com/artifact/ch.qos.logback/logback-classic]
> 1.3.12 - 1.3.14, 1.4.12 - 1.4.14 are safe
--
This message was sent by Atlassian Jira
(v8.20.10#820010)