2.3.0
ctron
released this
11 Dec 16:59
·
15 commits
to master
since this release
What's Changed
- Bump undertow-core from 2.2.19.Final to 2.2.24.Final by @dependabot in #17
- chore(deps): Update bouncycastle to v1.77, fixes CVE-2023-33201 by @konrad-ohms in #21
- Bump guava from 31.1-jre to 32.0.0-jre by @dependabot in #19
CVE-2023-33201 & other dependencies
While this update contains a dependency update due to CVE-2023-33201, this CVE doesn't affect pem-keystore
, as the relevant code is not used. Still, it might be flagged by security scanners. And it also should make picking a more recent version easier.
The other dependencies are also updated, but are only used for testing.
New Contributors
- @konrad-ohms made their first contribution in #21
Full Changelog: pem-keystore-2.2.2...pem-keystore-2.3.0