hkamel/sonar-auth-aad

CVE critical vulnerability detected in json dependency

shubhangijadhav opened this issue · 1 comments

Hi,

We have been successfully using the plugin for quite some time now, but recently our vulnerability scanner (aquasec) has detected a critical vulnerability in one of the dependencies, to be precise the following:

image

This was fixed in version 1.3.1 of this plugin when the version of adal4j was updated.