zaproxy
Chainguard
Status
Impact
This vulnerability cannot be remediated by upgrading the dependency without major changes to zaproxy. The project relies heavily on commons-httpclient (including patches). The project will need to migrate to a newer version to remediate this vulnerability (org.apache.httpcomponents:httpclient), or consider pulling the proposed patch (https://issues.apache.org/jira/browse/HTTPCLIENT-1265).
Status