Bugfixes

Incident number

Summary (problem description)

Resolution

PUB-422CVE-2024-22243 was detected on spring-webUpdated spring boot to 3.1.9

Platform support

Support has been added for JBoss EAP 8. For a complete overview of our supported platforms, please see Platform support.

Upgrade Instructions

There are no specific upgrade instructions but when you upgrade from version 6.x, please take a look at the Publisher 7.0 Upgrade Instructions

3rd Party Libraries

There is a page available which lists all the 3rd party libraries that are used in the Publisher. See for more information: Blueriq Publisher 7 libraries.

ArtifactId

GroupId

License

Version in 7.0.3

Version in 7.1.0

byte-buddy

net.bytebuddy

Apache License 2.0

1.14.11

1.14.12

commons-compiler

org.codehaus.janino

3-clause BSD License

3.1.11

3.1.12

hibernate-core

org.hibernate.orm

LGPL 2.1

6.2.20.Final

6.2.22.Final

jackson-annotations

com.fasterxml.jackson.core

Apache License 2.0

2.15.3

2.15.4

jackson-core

com.fasterxml.jackson.core

Apache License 2.0

2.15.3

2.15.4

jackson-databind

com.fasterxml.jackson.core

Apache License 2.0

2.15.3

2.15.4

jackson-dataformat-yaml

com.fasterxml.jackson.dataformat

Apache License 2.0

2.15.3

2.15.4

jackson-datatype-jsr310

com.fasterxml.jackson.datatype

Apache License 2.0

2.15.3

2.15.4

janino

org.codehaus.janino

3-clause BSD License

3.1.11

3.1.12

jcl-over-slf4j

org.slf4j

Apache License 2.0

2.0.11

2.0.12

jul-to-slf4j

org.slf4j

MIT License

2.0.11

2.0.12

log4j-over-slf4j

org.slf4j

Apache License 2.0

2.0.11

2.0.12

micrometer-commons

io.micrometer

Apache License 2.0

1.11.8

1.11.9

micrometer-observation

io.micrometer

Apache License 2.0

1.11.8

1.11.9

postgresql

org.postgresql

BSD License

42.6.0

42.6.1

slf4j-api

org.slf4j

MIT License

2.0.11

2.0.12

spring-aop

org.springframework

Apache License 2.0

6.0.16

6.0.17

spring-beans

org.springframework

Apache License 2.0

6.0.16

6.0.17

spring-boot

org.springframework.boot

Apache License 2.0

3.1.8

3.1.9

spring-boot-autoconfigure

org.springframework.boot

Apache License 2.0

3.1.8

3.1.9

spring-boot-starter

org.springframework.boot

Apache License 2.0

3.1.8

3.1.9

spring-boot-starter-logging

org.springframework.boot

Apache License 2.0

3.1.8

3.1.9

spring-context

org.springframework

Apache License 2.0

6.0.16

6.0.17

spring-core

org.springframework

Apache License 2.0

6.0.16

6.0.17

spring-expression

org.springframework

Apache License 2.0

6.0.16

6.0.17

spring-jcl

org.springframework

Apache License 2.0

6.0.16

6.0.17

spring-jdbc

org.springframework

Apache License 2.0

6.0.16

6.0.17

spring-orm

org.springframework

Apache License 2.0

6.0.16

6.0.17

spring-oxm

org.springframework

Apache License 2.0

6.0.16

6.0.17

spring-security-acl

org.springframework.security

Apache License 2.0

6.1.6

6.1.7

spring-security-config

org.springframework.security

Apache License 2.0

6.1.6

6.1.7

spring-security-core

org.springframework.security

Apache License 2.0

6.1.6

6.1.7

spring-security-crypto

org.springframework.security

Apache License 2.0

6.1.6

6.1.7

spring-security-oauth2-authorization-server

org.springframework.security

Apache License 2.0

1.1.4

1.1.5

spring-security-oauth2-core

org.springframework.security

Apache License 2.0

6.1.6

6.1.7

spring-security-oauth2-jose

org.springframework.security

Apache License 2.0

6.1.6

6.1.7

spring-security-oauth2-resource-server

org.springframework.security

Apache License 2.0

6.1.6

6.1.7

spring-security-taglibs

org.springframework.security

Apache License 2.0

6.1.6

6.1.7

spring-security-web

org.springframework.security

Apache License 2.0

6.1.6

6.1.7

spring-tx

org.springframework

Apache License 2.0

6.0.16

6.0.17

spring-web

org.springframework

Apache License 2.0

6.0.16

6.0.17

spring-webmvc

org.springframework

Apache License 2.0

6.0.16

6.0.17