Hi Qpid team,

CVE-2020-5258 is reported against dojo-toolkit and the fix is available in
these versions - 1.14.6 and 1.16.2. The latest Qpid Broker-J versions still
seem to be using older dojo-toolkit versions. 
Any update on when the this will be addressed? Or is it safe to just pick
the latest dojo-toolkit version?

Thanks,
Rajashekar



--
Sent from: http://qpid.2158936.n2.nabble.com/Apache-Qpid-users-f2158936.html

---------------------------------------------------------------------
To unsubscribe, e-mail: [email protected]
For additional commands, e-mail: [email protected]

Reply via email to