Announcement

Collapse
No announcement yet.
X
  • Filter
  • Time
Clear All
new posts

    Security vulnerability with commons-fileupload-1_1_1.jar

    Smartclient version: 6.5/STG Deployment

    Smart Client 6.5 has commons-fileupload-1_1_1.jar.
    We have found the below security vulnerability with commons-fileupload-1_1_1.jar

    https://cve.mitre.org/cgi-bin/cvenam...=CVE-2014-0050

    We need to upgrade to commons-fileupload-1_3_1.jar to remediate this vulnerability. Can we upgrade to commons-fileupload-1_3_1.jar in Smart Client 6.5?

    #2
    This upgrade should be fine.
    Let us know if you encounter any unexpected issues as a result - but we don't anticipate this being a problem.

    Comment

    Working...
    X