Uploaded image for project: 'Apache NiFi'
  1. Apache NiFi
  2. NIFI-12927

Upgrade Spring Security to 6.2.3

    XMLWordPrintableJSON

Details

    • Improvement
    • Status: Resolved
    • Major
    • Resolution: Fixed
    • None
    • 2.0.0-M3
    • Core Framework
    • None

    Description

      Spring Security 6.2.3 includes several bug fixes and resolves CVE-2024-22257 related to custom use of the Authenticated Voter class. NiFi does not use Spring Security in this way, but all Spring Security dependencies should be upgraded.

      Attachments

        Issue Links

          Activity

            People

              exceptionfactory David Handermann
              exceptionfactory David Handermann
              Votes:
              0 Vote for this issue
              Watchers:
              2 Start watching this issue

              Dates

                Created:
                Updated:
                Resolved:

                Time Tracking

                  Estimated:
                  Original Estimate - Not Specified
                  Not Specified
                  Remaining:
                  Remaining Estimate - 0h
                  0h
                  Logged:
                  Time Spent - 0.5h
                  0.5h