mojohaus / flatten-maven-plugin

Flatten Maven Plugin

Home Page:https://www.mojohaus.org/flatten-maven-plugin/

Geek Repo:Geek Repo

Github PK Tool:Github PK Tool

Vulnerability in commons-io dependency

MarcoDuran13 opened this issue · comments

Hello.
We want to report a case with the commons-io:2.4 dependency. This dependency has been reported with some vulnerabilities and this is currently causing us problems when using the latest version (1.2.7) of flatten-maven. Please check this out and update your version of flatten-maven. Thank you!!

Screen of vulnerability reported on maven portal:
image

Available versions for commons-io:
image

Doc about comons-io dependency:
image

Feel free to propose fix with pull request