[ANNOUNCE] Apache Commons Configuration 2.10.0

2024-03-13 Thread Gary Gregory
The Apache Commons is pleased to announce Apache Commons Configuration 2.10.0. The Commons Configuration software library provides a generic configuration interface that enables an application to read configuration data from a variety of sources and tools to assist in the reading of

Re: [REPORT] Apache Commons Board Report March 2024

2024-03-13 Thread Gary Gregory
Thank you! Gary On Wed, Mar 13, 2024, 9:31 AM Niall Pemberton wrote: > There’s a typo on the BCEL release - should be 6.8.2 rather than 3.8.2 > > Niall > > On Wed, 13 Mar 2024 at 12:37, Gary Gregory wrote: > > > Here it is for this quarter: > > > > ## Description: > > The mission of Apache

Re: [REPORT] Apache Commons Board Report March 2024

2024-03-13 Thread Niall Pemberton
There’s a typo on the BCEL release - should be 6.8.2 rather than 3.8.2 Niall On Wed, 13 Mar 2024 at 12:37, Gary Gregory wrote: > Here it is for this quarter: > > ## Description: > The mission of Apache Commons is the creation and maintenance of > Java-focused > reusable libraries and

Re: CVE-2024-25710 Vulnerability Issue in commons-compress-1.21.jar

2024-03-13 Thread Gary Gregory
If you read the CVE, especially "Known affected configuration" you'll see that the issue was fixed in 1.26.0. Gary On Wed, Mar 13, 2024, 9:22 AM Puneet Samaiya wrote: > Hello There, > > We've identified a vulnerability in our code related to > commons-compress-1.21.jar (expected version

[REPORT] Apache Commons Board Report March 2024

2024-03-13 Thread Gary Gregory
Here it is for this quarter: ## Description: The mission of Apache Commons is the creation and maintenance of Java-focused reusable libraries and components ## Project Status: Current project status: Ongoing with high activity. Issues for the board: None. ## Membership Data: Apache Commons was