[ https://issues.apache.org/jira/browse/KARAF-7609?page=com.atlassian.jira.plugin.system.issuetabpanels:comment-tabpanel&focusedCommentId=17649026#comment-17649026 ]
ASF subversion and git services commented on KARAF-7609: -------------------------------------------------------- Commit fa688889683ce91dd0e39bcc6ac7e4f92f23f016 in karaf's branch refs/heads/main from Jean-Baptiste Onofré [ https://gitbox.apache.org/repos/asf?p=karaf.git;h=fa68888968 ] [KARAF-7609] Upgrade to sshd 2.9.2 > Upgrade to sshd 2.9.2 > --------------------- > > Key: KARAF-7609 > URL: https://issues.apache.org/jira/browse/KARAF-7609 > Project: Karaf > Issue Type: Dependency upgrade > Components: karaf > Affects Versions: 4.3.7, 4.4.1 > Reporter: Karthick > Assignee: Jean-Baptiste Onofré > Priority: Major > Labels: dependency-upgrade > > The latest version of Apache Karaf 4.3.8 and 4.4.2 uses Apache MINA SSHD > 2.9.1 which is impacted by critical vulnerability cve-2022-45047. > > Please stepup this library to > 2.9.1 to solve this. -- This message was sent by Atlassian Jira (v8.20.10#820010)