Skip to content

Commit d5e2fb6

Browse files
authored
Merge pull request #132 from stormqueen1990/gradle-8/cve-2023-35116
gradle-8: CVE-2023-35116
2 parents 609dd9a + 44ae82b commit d5e2fb6

File tree

1 file changed

+6
-0
lines changed

1 file changed

+6
-0
lines changed

gradle-8.advisories.yaml

Lines changed: 6 additions & 0 deletions
Original file line numberDiff line numberDiff line change
@@ -25,3 +25,9 @@ advisories:
2525
- timestamp: 2023-08-10T18:11:57.628638-04:00
2626
status: fixed
2727
fixed-version: 8.2.1-r1
28+
29+
CVE-2023-35116:
30+
- timestamp: 2023-08-11T11:36:11.286307-04:00
31+
status: not_affected
32+
justification: vulnerable_code_not_present
33+
impact: CVE is being considered by the community a false positive. See https://github.com/FasterXML/jackson-databind/issues/3972 and https://github.com/anchore/grype/issues/1386

0 commit comments

Comments
 (0)