apache-tika-3.0
Chainguard
5.3
CVSS V3
Status
Impact
The upstream project has to fix the issue since if we try to bump the jetty-http version from 11.0.24 to the fixed version 12.0.12 the project did not compile
Status
Impact
Attempting to patch this CVE leads to JAR dependency mismatch, and will require an update from upstream maintainers to remediate.
Status