Bugfixes

Incident number
Summary (problem description)
Resolution
PUB-303CVE-2021-22118 in spring-core and spring-tx

Resolved by upgrading to spring 5.3.7

PUB-313logback < 1.2.9 contained CVE-2021-42550Resolved by upgrading logback dependencies to 1.2.9

Upgrade Instructions

There are no specific upgrade instructions but when you upgrade from version 4.x, please take a look at the Platform support and Installing Publisher 5 due to the upgrade to Java 11.

3rd Party Libraries

There is also a page available which lists all the 3rd party libraries that are used in the Publisher. See for more information: Blueriq Publisher 5 libraries.