johan.arvidsson (Partner) to rsaSFDCadmin (RSA): asked a question.

CVE-2022-41852 apache commons_jxpath
Hi!

I am wondering if this vulnerability is affecting any of the IG&L versions?

CVE-2022-41852 - <
https://nvd.nist.gov/vuln/detail/CVE-2022-41852>

My team made a vulnerability scan and found a corresponding jar of apache-
commons that used commons-jxpath, we are running IG&L 7.5.0 P03.

If IG&L is affected by this vulnerability then will it be fixed in an upcoming
releases or is it already fixed in any earlier version?

//Johan

  • For security reasons I am unable to respond to security questions in the
    forum. Please open a Customer Support case for a response.
    Selected as Best
  • For security reasons I am unable to respond to security questions in the
    forum. Please open a Customer Support case for a response.
    Selected as Best