[jira] [Work logged] (WW-5318) Upgrades slf4j-api to version 2.0.7

2023-07-13 Thread ASF GitHub Bot (Jira)
[ https://issues.apache.org/jira/browse/WW-5318?focusedWorklogId=870891&page=com.atlassian.jira.plugin.system.issuetabpanels:worklog-tabpanel#worklog-870891 ] ASF GitHub Bot logged work on WW-5318: -- Author: ASF GitHub Bot

[GitHub] [struts] sonarcloud[bot] commented on pull request #700: [WW-5318] Upgrades slf4j to version 2.0.7

2023-07-13 Thread via GitHub
sonarcloud[bot] commented on PR #700: URL: https://github.com/apache/struts/pull/700#issuecomment-1635322526 Kudos, SonarCloud Quality Gate passed!    [![Quality Gate passed](https://sonarsource.github.io/sonarcloud-github-static-resources/v2/checks/QualityGateBadge/passed-16px.png 'Quality

[jira] [Resolved] (WW-5320) finish Reproducible Builds

2023-07-13 Thread Lukasz Lenart (Jira)
[ https://issues.apache.org/jira/browse/WW-5320?page=com.atlassian.jira.plugin.system.issuetabpanels:all-tabpanel ] Lukasz Lenart resolved WW-5320. --- Resolution: Fixed > finish Reproducible Builds > -- > > Key: WW-

[jira] [Work logged] (WW-5318) Upgrades slf4j-api to version 2.0.7

2023-07-13 Thread ASF GitHub Bot (Jira)
[ https://issues.apache.org/jira/browse/WW-5318?focusedWorklogId=870890&page=com.atlassian.jira.plugin.system.issuetabpanels:worklog-tabpanel#worklog-870890 ] ASF GitHub Bot logged work on WW-5318: -- Author: ASF GitHub Bot

[jira] [Updated] (WW-5320) finish Reproducible Builds

2023-07-13 Thread Lukasz Lenart (Jira)
[ https://issues.apache.org/jira/browse/WW-5320?page=com.atlassian.jira.plugin.system.issuetabpanels:all-tabpanel ] Lukasz Lenart updated WW-5320: -- Fix Version/s: 6.3.0 > finish Reproducible Builds > -- > > Key: WW

[jira] [Resolved] (WW-5317) Upgrades log4j-api to version 2.20.0

2023-07-13 Thread Lukasz Lenart (Jira)
[ https://issues.apache.org/jira/browse/WW-5317?page=com.atlassian.jira.plugin.system.issuetabpanels:all-tabpanel ] Lukasz Lenart resolved WW-5317. --- Resolution: Fixed > Upgrades log4j-api to version 2.20.0 > > >

[jira] [Work logged] (WW-5317) Upgrades log4j-api to version 2.20.0

2023-07-13 Thread ASF GitHub Bot (Jira)
[ https://issues.apache.org/jira/browse/WW-5317?focusedWorklogId=870889&page=com.atlassian.jira.plugin.system.issuetabpanels:worklog-tabpanel#worklog-870889 ] ASF GitHub Bot logged work on WW-5317: -- Author: ASF GitHub Bot

Struts6 application having CSRF vulnerability

2023-07-13 Thread GAUTAM PRASAD
Hi, After scanning through OWASP - ZAP tool my application shows following medium level risk. Absence of Anti-CSRF Token for above ...I tried to implement token interceptor but I am not able to mitigate the risk and it still reflects on scanning. Kindly suggest. -- Regards Gautam