Bug 63725

Summary: Upgrade commons-compress to 1.19
Product: POI Reporter: Tilman Hausherr <tilman>
Component: POI OverallAssignee: POI Developers List <dev>
Status: RESOLVED FIXED    
Severity: minor    
Priority: P2    
Version: 4.0.x-dev   
Target Milestone: ---   
Hardware: PC   
OS: All   

Description Tilman Hausherr 2019-09-04 13:33:56 UTC
Consider updating commons-compress to 1.19, due to CVE-2019-12402.

The owasp plugin complained when I used poi-ooxml 4.1.0.
Comment 1 PJ Fanning 2019-09-04 17:02:28 UTC
Thanks for reporting this. The update is in trunk and will appear in next release.