Skip to content

fix(sec): upgrade org.pac4j:pac4j-oidc to 5.2.0#13395

Closed
pen4 wants to merge 1 commit intoapache:masterfrom
pen4:oscs_fix_cdtds08au51tdjnp9pkg
Closed

fix(sec): upgrade org.pac4j:pac4j-oidc to 5.2.0#13395
pen4 wants to merge 1 commit intoapache:masterfrom
pen4:oscs_fix_cdtds08au51tdjnp9pkg

Conversation

@pen4
Copy link
Copy Markdown
Contributor

@pen4 pen4 commented Nov 21, 2022

What happened?

There are 1 security vulnerabilities found in org.pac4j:pac4j-oidc 3.8.3

What did I do?

Upgrade org.pac4j:pac4j-oidc from 3.8.3 to 5.2.0 for vulnerability fix

What did you expect to happen?

Ideally, no insecure libs should be used.

The specification of the pull request

PR Specification from OSCS
Signed-off-by:pen4948453219@qq.com

@xvrl
Copy link
Copy Markdown
Member

xvrl commented Dec 15, 2023

@pen4 it looks like some code changes are required to uprade, since there is another PR open #14787 for 5.3 as well, I will close this

@xvrl xvrl closed this Dec 15, 2023
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Projects

None yet

Development

Successfully merging this pull request may close these issues.

3 participants