mirror of
https://github.com/keycloak/keycloak.git
synced 2026-01-09 23:12:06 -03:30
CVE-2022-41854/CVE-2022-38752 Snakeyaml vulnerable to Stack overflow leading to denial of service
Resolves #16062
This commit is contained in:
parent
235158399a
commit
a6007710f8
7
pom.xml
7
pom.xml
@ -120,6 +120,8 @@
|
||||
<google.guava.version>30.1-jre</google.guava.version>
|
||||
<xstream.version>1.4.20</xstream.version>
|
||||
<okhttp.version>4.10.0</okhttp.version>
|
||||
<!-- Override of SnakeYAML to fix multiple CVEs -->
|
||||
<org.yaml.snakeyaml.version>1.33</org.yaml.snakeyaml.version>
|
||||
|
||||
<!-- Openshift -->
|
||||
<version.com.openshift.openshift-restclient-java>9.0.5.Final</version.com.openshift.openshift-restclient-java>
|
||||
@ -315,6 +317,11 @@
|
||||
<artifactId>logging-interceptor</artifactId>
|
||||
<version>${okhttp.version}</version>
|
||||
</dependency>
|
||||
<dependency>
|
||||
<groupId>org.yaml</groupId>
|
||||
<artifactId>snakeyaml</artifactId>
|
||||
<version>${org.yaml.snakeyaml.version}</version>
|
||||
</dependency>
|
||||
<dependency>
|
||||
<groupId>org.jboss</groupId>
|
||||
<artifactId>jboss-dmr</artifactId>
|
||||
|
||||
Loading…
x
Reference in New Issue
Block a user