accumulo-commits mailing list archives

Site index · List index
Message view « Date » · « Thread »
Top « Date » · « Thread »
From GitBox <...@apache.org>
Subject [accumulo] Diff for: [GitHub] milleruntime merged pull request #902: Add exclusion to test for vuln in mini-kdc lib
Date Wed, 16 Jan 2019 00:30:15 GMT
diff --git a/test/pom.xml b/test/pom.xml
index abd3fb8aeb..381864a1e6 100644
--- a/test/pom.xml
+++ b/test/pom.xml
@@ -152,6 +152,11 @@
           <groupId>bouncycastle</groupId>
           <artifactId>bcprov-jdk15</artifactId>
         </exclusion>
+        <!-- avoid vuln in JOSE library see https://nvd.nist.gov/vuln/detail/CVE-2017-12974
-->
+        <exclusion>
+          <groupId>com.nimbusds</groupId>
+          <artifactId>nimbus-jose-jwt</artifactId>
+        </exclusion>
       </exclusions>
     </dependency>
     <dependency>


With regards,
Apache Git Services

Mime
View raw message