Bugfixes

Incident number
Summary (problem description)
Resolution
BQ-22868CVE-2024-22262 was detected on spring-webupdated spring-framework to 5.3.34

Upgrade Instructions

There are no specific upgrade instructions but when you upgrade from version 6.1.4, please take a look at the Platform support and Installing Publisher 6 due to the upgrade to Java 17.

3rd Party Libraries

There is also a page available which lists all the 3rd party libraries that are used in the Publisher. See for more information: Blueriq Publisher 6 libraries.


ArtifactId

GroupId

License

Version in 6.1.4

Version in 6.1.5

spring-aop

org.springframework

Apache License 2.0

5.3.32

5.3.34

spring-beans

org.springframework

Apache License 2.0

5.3.32

5.3.34

spring-context

org.springframework

Apache License 2.0

5.3.32

5.3.34

spring-core

org.springframework

Apache License 2.0

5.3.32

5.3.34

spring-expression

org.springframework

Apache License 2.0

5.3.32

5.3.34

spring-jdbc

org.springframework

Apache License 2.0

5.3.32

5.3.34

spring-orm

org.springframework

Apache License 2.0

5.3.32

5.3.34

spring-oxm

org.springframework

Apache License 2.0

5.3.32

5.3.34

spring-security-acl

org.springframework.security

Apache License 2.0

5.8.7

5.8.11

spring-security-config

org.springframework.security

Apache License 2.0

5.8.7

5.8.11

spring-security-core

org.springframework.security

Apache License 2.0

5.8.7

5.8.11

spring-security-crypto

org.springframework.security

Apache License 2.0

5.8.7

5.8.11

spring-security-oauth2-core

org.springframework.security

Apache License 2.0

5.8.7

5.8.11

spring-security-oauth2-jose

org.springframework.security

Apache License 2.0

5.8.7

5.8.11

spring-security-oauth2-resource-server

org.springframework.security

Apache License 2.0

5.8.7

5.8.11

spring-security-taglibs

org.springframework.security

Apache License 2.0

5.8.7

5.8.11

spring-security-web

org.springframework.security

Apache License 2.0

5.8.7

5.8.11

spring-test

org.springframework

Apache License 2.0

5.3.32

5.3.34

spring-tx

org.springframework

Apache License 2.0

5.3.32

5.3.34

spring-web

org.springframework

Apache License 2.0

5.3.32

5.3.34

spring-webmvc

org.springframework

Apache License 2.0

5.3.32

5.3.34