Clarity, Jaspersoft and Node.js vulnerabilities
search cancel

Clarity, Jaspersoft and Node.js vulnerabilities

book

Article ID: 246332

calendar_today

Updated On:

Products

Clarity PPM On Premise Clarity PPM SaaS

Issue/Introduction

Are Clarity/Jaspersoft affected by Node.js vulnerabilities, such as:

  • CVE-2022-32213
  • CVE-2022-32214
  • CVE-2022-32215
  • CVE-2022-32212
  • CVE-2022-32223
  • CVE-2022-32222
  • CVE-2022-2097

Ref: July 7th 2022 Security Releases

Environment

Release : All Supported Clarity & Jaspersoft Version 

Component : Clarity Security Integration

Cause

Verification of Vulnerability against Clarity and Jaspersoft.

Resolution

  • Clarity does not ship or use Node.js libraries.
  • Jaspersoft does not use Node.js libs in the deployed web app.