cancel
Showing results for 
Search instead for 
Did you mean: 
Read only

Security Vulnerabilities in Crystal report engine for eclipse SP31

neilpayne-1
Explorer
0 Kudos
260

Hello

Looks like there are some vulnerabilities in Crystal Report Runtime Engine For Eclipse SP31 in the xmlconnector.jar file:

bouncycastle: xmlconnector.jar/lib/bcprov-jdk18on-171.jar   
Vulnerabilties: https://mvnrepository.com/artifact/org.bouncycastle/bcprov-jdk18on

Remediation version: 1.8

Apache Santuario: lib/xmlconnector.jar/lib/xmlsec-2.2.3.jar
Vulnerabilties: https://mvnrepository.com/artifact/org.apache.santuario/xmlsec
Remediation version: 4.0.3

Is there any chance this can be added to the roadmap?

Thank you!

Apologies, these were the vulnerabilities for sp30, which have been addressed in SP31

Accepted Solutions (1)

Accepted Solutions (1)

DonWilliams
Active Contributor

Thank you for confirming they were fixed

Answers (0)