Skip to content

[FP]: CVE-2022-41852 has been rejected #5092

@RomRom1

Description

@RomRom1

Package URl

pkg:maven/commons-jxpath/commons-jxpath@1.3

CPE

cpe:2.3:a:apache:commons_jxpath:1.3:::::::*

CVE

CVE-2022-41852

ODC Integration

{"label"=>"Maven Plugin"}

ODC Version

7.3.2

Description

CVE-2022-41852 has been rejected

This candidate was withdrawn by its CNA. Further investigation showed that it was not a security issue

Present in spring-cloud-netflix-eureka-client v3.1.4 ( cf. Netflix/eureka#1471 )

[INFO] +- org.springframework.cloud:spring-cloud-starter-netflix-eureka-client:jar:3.1.4:compile
[INFO] |  +- org.springframework.cloud:spring-cloud-netflix-eureka-client:jar:3.1.4:compile
[INFO] |  +- com.netflix.eureka:eureka-client:jar:1.10.17:compile
[INFO] |  |  +- com.netflix.netflix-commons:netflix-eventbus:jar:0.3.0:compile
[INFO] |  |  |  +- com.netflix.netflix-commons:netflix-infix:jar:0.3.0:runtime
[INFO] |  |  |  |  +- commons-jxpath:commons-jxpath:jar:1.3:runtime

Metadata

Metadata

Assignees

No one assigned

    Labels

    FP Reportmavenchanges to the maven pluginossindexLabel for issues that relate to the OSSIndex API

    Type

    No type

    Projects

    No projects

    Milestone

    No milestone

    Relationships

    None yet

    Development

    No branches or pull requests

    Issue actions