wso2is
Chainguard
Status
Impact
The vulnerability originates from a component used within the package, Solr 9.5.0, which bundles Jetty 10.0.20. The upstream project needs to upgrade the package and use a Solr version that upgrades Jetty to 10.0.26, the patched release. Once that’s available, we can upgrade and remediate the CVE.
Status