Vulnerabilities detected with Jetty version 8.1.19
search cancel

Vulnerabilities detected with Jetty version 8.1.19

book

Article ID: 248305

calendar_today

Updated On:

Products

CA Process Automation Base

Issue/Introduction

Below vulnerabilities detected with Jetty version 8.1.19:

  • The MortBay / Eclipse Jetty version on the remote host has reached the End of Life (EOL) and should not be used anymore.
  • Eclipse Jetty is prone to a denial of service (DoS) vulnerability.

Environment

Release : 4.3.X

Component : Process Automation

Resolution

Engineering team confirmed that ITPAM 4.4 will have the Jetty version 9.4.45

Refer ITPAM communities for notifications: IT PAM Communities