Update SoapUI to use Jetty 7.0.1 or later version to remediate XSS vulnerabilities
- Bookmark
- Subscribe
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
02-09-2022
07:25 AM
02-09-2022
07:25 AM
Update SoapUI to use Jetty 7.0.1 or later version to remediate XSS vulnerabilities
Hi, is there any plan to upgrade SoapUI to use Jetty 7.0.1 or later version because versions 6.x and 7.0.0 have remote XSS vulnerabilities (https://nvd.nist.gov/vuln/detail/CVE-2009-4610) that can let remote users to run arbitrary commands? Thanks
3 REPLIES 3
- Bookmark
- Subscribe
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
03-08-2022
07:49 AM
03-08-2022
07:49 AM
Hi,
I would also like to know when an update will be available.
Our security team will block the use of SoapUI if i do not update soon.
- Bookmark
- Subscribe
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
03-31-2022
08:18 AM
03-31-2022
08:18 AM
Can I get an official response from SmartBear? My organization will pull the plug on SoapUI this April 3rd if this issue is not addressed.
- Bookmark
- Subscribe
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
07-22-2022
08:57 AM
07-22-2022
08:57 AM
