<?xml version="1.0" encoding="utf-8" standalone="yes"?>
<rss version="2.0" xmlns:atom="http://www.w3.org/2005/Atom">
  <channel>
    <title>CVE security reports on </title>
    <link>/sicsdocs/releases/22.4/cve_security_reports/</link>
    <description>Recent content in CVE security reports on </description>
    <generator>Hugo -- gohugo.io</generator><atom:link href="/sicsdocs/releases/22.4/cve_security_reports/index.xml" rel="self" type="application/rss+xml" />
    <item>
      <title>CVE Security Report - SICS ADH Server</title>
      <link>/sicsdocs/releases/22.4/cve_security_reports/sics_adh_server/</link>
      <pubDate>Mon, 01 Jan 0001 00:00:00 +0000</pubDate>
      
      <guid>/sicsdocs/releases/22.4/cve_security_reports/sics_adh_server/</guid>
      <description>The report contains data retrieved from the National Vulnerability Database: https://nvd.nist.gov, NPM Public Advisories: https://www.npmjs.com/advisories, and the RetireJS community.NameDescriptionCWECVSS v2.0 SeverityCVSS v3.0 SeverityDependencyCVE-2022-42003In FasterXML jackson-databind before 2.14.0-rc1, resource exhaustion can occur because of a lack of a check in primitive value deserializers to avoid deep wrapper array nesting, when the UNWRAP_SINGLE_VALUE_ARRAYS feature is enabled. Additional fix version in 2.13.4.1 and 2.12.17.1CWE-502HIGHjackson-databind-2.</description>
    </item>
    
    <item>
      <title>CVE Security Report - SICS API Server</title>
      <link>/sicsdocs/releases/22.4/cve_security_reports/sics_api_server/</link>
      <pubDate>Mon, 01 Jan 0001 00:00:00 +0000</pubDate>
      
      <guid>/sicsdocs/releases/22.4/cve_security_reports/sics_api_server/</guid>
      <description>The report contains data retrieved from the National Vulnerability Database: https://nvd.nist.gov, NPM Public Advisories: https://www.npmjs.com/advisories, and the RetireJS community.NameDescriptionCWECVSS v2.0 SeverityCVSS v3.0 SeverityDependencyCVE-2021-43797Netty is an asynchronous event-driven network application framework for rapid development of maintainable high performance protocol servers &amp;amp; clients. Netty prior to version 4.1.71.Final skips control chars when they are present at the beginning / end of the header name.</description>
    </item>
    
    <item>
      <title>CVE Security Report - SICS Batch Server</title>
      <link>/sicsdocs/releases/22.4/cve_security_reports/sics_batch_server/</link>
      <pubDate>Mon, 01 Jan 0001 00:00:00 +0000</pubDate>
      
      <guid>/sicsdocs/releases/22.4/cve_security_reports/sics_batch_server/</guid>
      <description>The report contains data retrieved from the National Vulnerability Database: https://nvd.nist.gov, NPM Public Advisories: https://www.npmjs.com/advisories, and the RetireJS community.NameDescriptionCWECVSS v2.0 SeverityCVSS v3.0 SeverityDependencyCVE-2021-43797Netty is an asynchronous event-driven network application framework for rapid development of maintainable high performance protocol servers &amp;amp; clients. Netty prior to version 4.1.71.Final skips control chars when they are present at the beginning / end of the header name.</description>
    </item>
    
    <item>
      <title>CVE Security Report - SICS Desktop App</title>
      <link>/sicsdocs/releases/22.4/cve_security_reports/sics_desktop_app/</link>
      <pubDate>Mon, 01 Jan 0001 00:00:00 +0000</pubDate>
      
      <guid>/sicsdocs/releases/22.4/cve_security_reports/sics_desktop_app/</guid>
      <description>The report contains data retrieved from the National Vulnerability Database: https://nvd.nist.gov, NPM Public Advisories: https://www.npmjs.com/advisories, and the RetireJS community.NameDescriptionCWECVSS v2.0 SeverityCVSS v3.0 SeverityDependencyCVE-2021-43797Netty is an asynchronous event-driven network application framework for rapid development of maintainable high performance protocol servers &amp;amp; clients. Netty prior to version 4.1.71.Final skips control chars when they are present at the beginning / end of the header name.</description>
    </item>
    
    <item>
      <title>CVE Security Report - SICS eMessaging Server</title>
      <link>/sicsdocs/releases/22.4/cve_security_reports/sics_emessaging_server/</link>
      <pubDate>Mon, 01 Jan 0001 00:00:00 +0000</pubDate>
      
      <guid>/sicsdocs/releases/22.4/cve_security_reports/sics_emessaging_server/</guid>
      <description>The report contains data retrieved from the National Vulnerability Database: https://nvd.nist.gov, NPM Public Advisories: https://www.npmjs.com/advisories, and the RetireJS community.NameDescriptionCWECVSS v2.0 SeverityCVSS v3.0 SeverityDependencyCVE-2021-43797Netty is an asynchronous event-driven network application framework for rapid development of maintainable high performance protocol servers &amp;amp; clients. Netty prior to version 4.1.71.Final skips control chars when they are present at the beginning / end of the header name.</description>
    </item>
    
    <item>
      <title>CVE Security Report - SICS Java Launcher</title>
      <link>/sicsdocs/releases/22.4/cve_security_reports/sics_java_launcher/</link>
      <pubDate>Mon, 01 Jan 0001 00:00:00 +0000</pubDate>
      
      <guid>/sicsdocs/releases/22.4/cve_security_reports/sics_java_launcher/</guid>
      <description>The report contains data retrieved from the National Vulnerability Database: https://nvd.nist.gov, NPM Public Advisories: https://www.npmjs.com/advisories, and the RetireJS community.No vulnerable dependencies found.This report was generated 14.12.2022, 05:14:07 UTC, using dependency-check version: 6.5.0.</description>
    </item>
    
    <item>
      <title>CVE Security Report - SICS Naming Service</title>
      <link>/sicsdocs/releases/22.4/cve_security_reports/sics_naming_service/</link>
      <pubDate>Mon, 01 Jan 0001 00:00:00 +0000</pubDate>
      
      <guid>/sicsdocs/releases/22.4/cve_security_reports/sics_naming_service/</guid>
      <description>The report contains data retrieved from the National Vulnerability Database: https://nvd.nist.gov, NPM Public Advisories: https://www.npmjs.com/advisories, and the RetireJS community.NameDescriptionCWECVSS v2.0 SeverityCVSS v3.0 SeverityDependencyCVE-2021-28170In the Jakarta Expression Language implementation 3.0.3 and earlier, a bug in the ELParserTokenManager enables invalid EL expressions to be evaluated as if they were valid.CWE-917MEDIUMMEDIUMjakarta.el-api-3.0.2.jarCVE-2021-41182jQuery-UI is the official jQuery user interface library. Prior to version 1.</description>
    </item>
    
    <item>
      <title>CVE Security Report - SICS Operational Reporting Server</title>
      <link>/sicsdocs/releases/22.4/cve_security_reports/sics_operational_reporting_server/</link>
      <pubDate>Mon, 01 Jan 0001 00:00:00 +0000</pubDate>
      
      <guid>/sicsdocs/releases/22.4/cve_security_reports/sics_operational_reporting_server/</guid>
      <description>The report contains data retrieved from the National Vulnerability Database: https://nvd.nist.gov, NPM Public Advisories: https://www.npmjs.com/advisories, and the RetireJS community.NameDescriptionCWECVSS v2.0 SeverityCVSS v3.0 SeverityDependency1081700All versions of package angular are vulnerable to Cross-site Scripting (XSS) due to insecure page caching in the Internet Explorer browser, which allows interpolation of &amp;lt;textarea&amp;gt; elements. NPM package [angular](https://www.npmjs.com/package/angular) is deprecated. Those who want to receive security updates should use the actively maintained package [@angular/core](https://www.</description>
    </item>
    
    <item>
      <title>CVE Security Report - SICS Operational Reporting SolrNode</title>
      <link>/sicsdocs/releases/22.4/cve_security_reports/sics_operational_reporting_solr_node/</link>
      <pubDate>Mon, 01 Jan 0001 00:00:00 +0000</pubDate>
      
      <guid>/sicsdocs/releases/22.4/cve_security_reports/sics_operational_reporting_solr_node/</guid>
      <description>The report contains data retrieved from the National Vulnerability Database: https://nvd.nist.gov, NPM Public Advisories: https://www.npmjs.com/advisories, and the RetireJS community.NameDescriptionCWECVSS v2.0 SeverityCVSS v3.0 SeverityDependencyEnd-of-Life: Long term support for AngularJS has been discontinuedEnd-of-Life: Long term support for AngularJS has been discontinuedangular-cookies.min.jsEnd-of-Life: Long term support for AngularJS has been discontinuedEnd-of-Life: Long term support for AngularJS has been discontinuedangular-resource.min.jsEnd-of-Life: Long term support for AngularJS has been discontinuedEnd-of-Life: Long term support for AngularJS has been discontinuedangular-route.</description>
    </item>
    
    <item>
      <title>CVE Security Report - SICS Search Server</title>
      <link>/sicsdocs/releases/22.4/cve_security_reports/sics_search_server/</link>
      <pubDate>Mon, 01 Jan 0001 00:00:00 +0000</pubDate>
      
      <guid>/sicsdocs/releases/22.4/cve_security_reports/sics_search_server/</guid>
      <description>The report contains data retrieved from the National Vulnerability Database: https://nvd.nist.gov, NPM Public Advisories: https://www.npmjs.com/advisories, and the RetireJS community.NameDescriptionCWECVSS v2.0 SeverityCVSS v3.0 SeverityDependencyCVE-2022-42003In FasterXML jackson-databind before 2.14.0-rc1, resource exhaustion can occur because of a lack of a check in primitive value deserializers to avoid deep wrapper array nesting, when the UNWRAP_SINGLE_VALUE_ARRAYS feature is enabled. Additional fix version in 2.13.4.1 and 2.12.17.1CWE-502HIGHjackson-databind-2.</description>
    </item>
    
    <item>
      <title>CVE Security Report - SICS Search Solr-node</title>
      <link>/sicsdocs/releases/22.4/cve_security_reports/sics_search_solr_node/</link>
      <pubDate>Mon, 01 Jan 0001 00:00:00 +0000</pubDate>
      
      <guid>/sicsdocs/releases/22.4/cve_security_reports/sics_search_solr_node/</guid>
      <description>The report contains data retrieved from the National Vulnerability Database: https://nvd.nist.gov, NPM Public Advisories: https://www.npmjs.com/advisories, and the RetireJS community.NameDescriptionCWECVSS v2.0 SeverityCVSS v3.0 SeverityDependencyEnd-of-Life: Long term support for AngularJS has been discontinuedEnd-of-Life: Long term support for AngularJS has been discontinuedangular-cookies.min.jsEnd-of-Life: Long term support for AngularJS has been discontinuedEnd-of-Life: Long term support for AngularJS has been discontinuedangular-resource.min.jsEnd-of-Life: Long term support for AngularJS has been discontinuedEnd-of-Life: Long term support for AngularJS has been discontinuedangular-route.</description>
    </item>
    
    <item>
      <title>CVE Security Report - SICS Docs</title>
      <link>/sicsdocs/releases/22.4/cve_security_reports/sics_docs/</link>
      <pubDate>Mon, 01 Jan 0001 00:00:00 +0000</pubDate>
      
      <guid>/sicsdocs/releases/22.4/cve_security_reports/sics_docs/</guid>
      <description>The report contains data retrieved from the National Vulnerability Database: https://nvd.nist.gov, NPM Public Advisories: https://www.npmjs.com/advisories, and the RetireJS community.No vulnerable dependencies found.This report was generated 14.12.2022, 05:16:36 UTC, using dependency-check version: 6.5.0.</description>
    </item>
    
  </channel>
</rss>
