Skip to content
Success

Changes

Summary

  1. [GovWayCore] (commit: 8e7fff5) (details)
Commit 8e7fff539b81d779378b8c08c8f9faa318b45b83 by Andrea Poli
[GovWayCore]
Sono state risolte le seguenti vulnerabilità relative ai jar di terza parte per la versione 3.3.x:
- CVE-2025-48795: aggiornata libreria 'org.apache.cxf:*' alla versione 3.6.7
- CVE-2025-31672: aggiornata libreria 'org.apache.poi:poi' alla versione 5.4.1
(commit: 8e7fff5)
The file was addedthird-party-licenses/cxf/cxf-core-3.6.7-gov4j-1/LICENSE
The file was addedthird-party-licenses/cxf/cxf-tools-wsdlto-databinding-jaxb-3.6.7/LICENSE
The file was addedthird-party-licenses/cxf/cxf-rt-frontend-simple-3.6.7/LICENSE
The file was removedthird-party-licenses/cxf/cxf-rt-databinding-jaxb-3.6.5/LICENSE
The file was removedthird-party-licenses/cxf/cxf-rt-frontend-simple-3.6.5/LICENSE
The file was modifiedmvn/dependencies/cxf/pom.xml (diff)
The file was addedthird-party-licenses/cxf/cxf-rt-security-saml-3.6.7/LICENSE
The file was addedthird-party-licenses/cxf/cxf-rt-rs-security-jose-jaxrs-3.6.7/LICENSE
The file was addedthird-party-licenses/cxf/cxf-rt-frontend-jaxrs-3.6.7/LICENSE
The file was addedthird-party-licenses/cxf/cxf-rt-ws-security-3.6.7/LICENSE
The file was modifiedChangeLog (diff)
The file was removedthird-party-licenses/cxf/cxf-rt-transports-http-3.6.5/LICENSE
The file was removedthird-party-licenses/cxf/cxf-tools-wsdlto-databinding-jaxb-3.6.5/LICENSE
The file was modifiedexample/pdd/server/testService/build.xml (diff)
The file was removedthird-party-licenses/cxf/cxf-tools-wsdlto-core-3.6.5/LICENSE
The file was removedthird-party-licenses/reports/poi-5.2.3/LICENSE
The file was removedthird-party-licenses/cxf/cxf-core-3.6.5-gov4j-2/LICENSE
The file was addedthird-party-licenses/cxf/cxf-rt-security-3.6.7/LICENSE
The file was removedthird-party-licenses/cxf/cxf-rt-ws-security-3.6.5/LICENSE
The file was modifiedtools/rs/monitor/server/ant/openspcoop2-govwayMonitorApiRS-war.xml (diff)
The file was addedthird-party-licenses/cxf/cxf-tools-wsdlto-frontend-jaxws-3.6.7/LICENSE
The file was removedthird-party-licenses/cxf/cxf-rt-features-logging-3.6.5/LICENSE
The file was addedthird-party-licenses/cxf/cxf-rt-frontend-jaxws-3.6.7/LICENSE
The file was removedthird-party-licenses/cxf/cxf-rt-rs-client-3.6.5/LICENSE
The file was modifiedresources/doc/src/manuali/vulnerability-management/securityAdvisory/2025/CVE-2025-48924.rst (diff)
The file was removedthird-party-licenses/cxf/cxf-rt-ws-policy-3.6.5/LICENSE
The file was addedthird-party-licenses/cxf/cxf-rt-ws-policy-3.6.7/LICENSE
The file was removedthird-party-licenses/cxf/cxf-rt-rs-service-description-common-openapi-3.6.5/LICENSE
The file was modifiedlib/openspcoop2.userlibraries (diff)
The file was removedthird-party-licenses/cxf/cxf-rt-bindings-soap-3.6.5/LICENSE
The file was addedthird-party-licenses/cxf/cxf-rt-transports-http-jetty-3.6.7/LICENSE
The file was modifiedcore/ant/openspcoop2-ear.xml (diff)
The file was addedthird-party-licenses/reports/poi-5.4.1/LICENSE
The file was removedthird-party-licenses/cxf/cxf-rt-security-3.6.5/LICENSE
The file was removedthird-party-licenses/cxf/cxf-rt-rs-json-basic-3.6.5/LICENSE
The file was addedresources/doc/src/manuali/vulnerability-management/securityAdvisory/2025/CVE-2025-31672.rst
The file was addedthird-party-licenses/cxf/cxf-rt-transports-http-3.6.7/LICENSE
The file was addedthird-party-licenses/cxf/cxf-rt-rs-service-description-openapi-v3-3.6.7/LICENSE
The file was modifiedmvn/dependencies/owasp/falsePositives/CVE-2022-40705.xml (diff)
The file was removedthird-party-licenses/cxf/cxf-rt-rs-service-description-openapi-v3-3.6.5/LICENSE
The file was removedthird-party-licenses/cxf/cxf-rt-security-saml-3.6.5/LICENSE
The file was removedthird-party-licenses/cxf/cxf-rt-transports-http-jetty-3.6.5/LICENSE
The file was addedthird-party-licenses/cxf/cxf-rt-rs-client-3.6.7/LICENSE
The file was addedthird-party-licenses/cxf/cxf-rt-rs-security-jose-3.6.7-gov4j-1/LICENSE
The file was addedthird-party-licenses/cxf/cxf-tools-wsdlto-core-3.6.7/LICENSE
The file was modifiedprotocolli/spcoop/example/registroServizi/wsdl/build.xml (diff)
The file was modifiedmvn/dependencies/reports/pom.xml (diff)
The file was removedthird-party-licenses/cxf/cxf-rt-rs-security-jose-3.6.5-gov4j-2/LICENSE
The file was modifiedtools/web_interfaces/loader/ant/openspcoop2-govwayLoader-war.xml (diff)
The file was addedthird-party-licenses/cxf/cxf-tools-validator-3.6.7/LICENSE
The file was removedthird-party-licenses/cxf/cxf-rt-wsdl-3.6.5/LICENSE
The file was removedthird-party-licenses/cxf/cxf-tools-validator-3.6.5/LICENSE
The file was addedthird-party-licenses/cxf/cxf-rt-rs-service-description-swagger-ui-3.6.7/LICENSE
The file was addedthird-party-licenses/cxf/cxf-rt-databinding-jaxb-3.6.7/LICENSE
The file was addedthird-party-licenses/cxf/cxf-rt-rs-json-basic-3.6.7/LICENSE
The file was addedresources/doc/src/manuali/vulnerability-management/securityAdvisory/2025/CVE-2025-48795.rst
The file was removedthird-party-licenses/cxf/cxf-rt-rs-security-jose-jaxrs-3.6.5/LICENSE
The file was addedthird-party-licenses/cxf/cxf-rt-bindings-soap-3.6.7/LICENSE
The file was removedthird-party-licenses/cxf/cxf-tools-wsdlto-frontend-jaxws-3.6.5/LICENSE
The file was removedthird-party-licenses/cxf/cxf-rt-frontend-jaxrs-3.6.5/LICENSE
The file was addedthird-party-licenses/cxf/cxf-rt-wsdl-3.6.7/LICENSE
The file was addedthird-party-licenses/cxf/cxf-rt-rs-service-description-common-openapi-3.6.7/LICENSE
The file was removedthird-party-licenses/cxf/cxf-rt-rs-service-description-swagger-ui-3.6.5/LICENSE
The file was removedthird-party-licenses/cxf/cxf-tools-common-3.6.5/LICENSE
The file was addedthird-party-licenses/cxf/cxf-rt-features-logging-3.6.7/LICENSE
The file was modifiedtools/web_interfaces/monitor/ant/openspcoop2-govwayMonitor-war.xml (diff)
The file was removedthird-party-licenses/cxf/cxf-rt-frontend-jaxws-3.6.5/LICENSE
The file was addedthird-party-licenses/cxf/cxf-tools-common-3.6.7/LICENSE
The file was modifiedresources/doc/src/manuali/vulnerability-management/securityAdvisory/2025/index.rst (diff)