| route-pattern | /_view_fragments/voltron/pull_requests/show/:user_id/:repository/:id/pull_request_layout(.:format) |
| route-controller | voltron_pull_requests_fragments |
| route-action | pull_request_layout |
| fetch-nonce | v2:619d5e1f-fc25-70fa-e646-c9ac099050ce |
| current-catalog-service-hash | ae870bc5e265a340912cde392f23dad3671a0a881730ffdadd82f2f57d81641b |
| request-id | D87C:39BB24:14253DA:1A95856:69718C8A |
| html-safe-nonce | 4396a8dc8387ac580295deebe15f5cc95dd6a89a3e7dbd47939247cd0a5009ac |
| visitor-payload | eyJyZWZlcnJlciI6IiIsInJlcXVlc3RfaWQiOiJEODdDOjM5QkIyNDoxNDI1M0RBOjFBOTU4NTY6Njk3MThDOEEiLCJ2aXNpdG9yX2lkIjoiMzM2NDAzNzM2MTM1MDQ0MjM0IiwicmVnaW9uX2VkZ2UiOiJpYWQiLCJyZWdpb25fcmVuZGVyIjoiaWFkIn0= |
| visitor-hmac | 3f080213cf67a424d7f47f826407573814ce275dcd22ac35f1dc54bce3e77056 |
| hovercard-subject-tag | pull_request:2671422818 |
| github-keyboard-shortcuts | repository,pull-request-list,pull-request-conversation,pull-request-files-changed,copilot |
| google-site-verification | Apib7-x98H0j5cPqHWwSMm6dNU4GmODRoqxLiDzdx9I |
| octolytics-url | https://collector.github.com/github/collect |
| analytics-location | ///voltron/pull_requests_fragments/pull_request_layout |
| fb:app_id | 1401488693436528 |
| apple-itunes-app | app-id=1477376905, app-argument=https://github.com/_view_fragments/voltron/pull_requests/show/ESAPI/esapi-java-legacy/895/pull_request_layout |
| twitter:image | https://opengraph.githubassets.com/142c990320e071c82f41813239d14eb22bd54b03a302f43719fee469a5fc70be/ESAPI/esapi-java-legacy/pull/895 |
| twitter:card | summary_large_image |
| og:image | https://opengraph.githubassets.com/142c990320e071c82f41813239d14eb22bd54b03a302f43719fee469a5fc70be/ESAPI/esapi-java-legacy/pull/895 |
| og:image:alt | I updated the dependency-check-maven plugin version locally to 12.1.1 and ran with a later JDK to confirm no other CVEs were detected. |
| og:image:width | 1200 |
| og:image:height | 600 |
| og:site_name | GitHub |
| og:type | object |
| og:author:username | sabbott1877 |
| hostname | github.com |
| expected-hostname | github.com |
| None | 2b0f2f00499ad3dd2c21ad030a3c403edca54df20ea256f6517c6d8c4fa3a1a4 |
| turbo-cache-control | no-preview |
| go-import | github.com/ESAPI/esapi-java-legacy git https://github.com/ESAPI/esapi-java-legacy.git |
| octolytics-dimension-user_id | 5580725 |
| octolytics-dimension-user_login | ESAPI |
| octolytics-dimension-repository_id | 23857463 |
| octolytics-dimension-repository_nwo | ESAPI/esapi-java-legacy |
| octolytics-dimension-repository_public | true |
| octolytics-dimension-repository_is_fork | false |
| octolytics-dimension-repository_network_root_id | 23857463 |
| octolytics-dimension-repository_network_root_nwo | ESAPI/esapi-java-legacy |
| turbo-body-classes | logged-out env-production page-responsive |
| disable-turbo | false |
| browser-stats-url | https://api.github.com/_private/browser/stats |
| browser-errors-url | https://api.github.com/_private/browser/errors |
| release | 67235153f3c1514ed5f7dc469f138abc377bd388 |
| ui-target | full |
| theme-color | #1e2327 |
| color-scheme | light dark |
| Skip to content | https://patch-diff.githubusercontent.com/ESAPI/esapi-java-legacy/pull/895#start-of-content |
|
| https://patch-diff.githubusercontent.com/ |
|
Sign in
| https://patch-diff.githubusercontent.com/login?return_to=https%3A%2F%2Fgithub.com%2FESAPI%2Fesapi-java-legacy%2Fpull%2F895 |
| GitHub CopilotWrite better code with AI | https://github.com/features/copilot |
| GitHub SparkBuild and deploy intelligent apps | https://github.com/features/spark |
| GitHub ModelsManage and compare prompts | https://github.com/features/models |
| MCP RegistryNewIntegrate external tools | https://github.com/mcp |
| ActionsAutomate any workflow | https://github.com/features/actions |
| CodespacesInstant dev environments | https://github.com/features/codespaces |
| IssuesPlan and track work | https://github.com/features/issues |
| Code ReviewManage code changes | https://github.com/features/code-review |
| GitHub Advanced SecurityFind and fix vulnerabilities | https://github.com/security/advanced-security |
| Code securitySecure your code as you build | https://github.com/security/advanced-security/code-security |
| Secret protectionStop leaks before they start | https://github.com/security/advanced-security/secret-protection |
| Why GitHub | https://github.com/why-github |
| Documentation | https://docs.github.com |
| Blog | https://github.blog |
| Changelog | https://github.blog/changelog |
| Marketplace | https://github.com/marketplace |
| View all features | https://github.com/features |
| Enterprises | https://github.com/enterprise |
| Small and medium teams | https://github.com/team |
| Startups | https://github.com/enterprise/startups |
| Nonprofits | https://github.com/solutions/industry/nonprofits |
| App Modernization | https://github.com/solutions/use-case/app-modernization |
| DevSecOps | https://github.com/solutions/use-case/devsecops |
| DevOps | https://github.com/solutions/use-case/devops |
| CI/CD | https://github.com/solutions/use-case/ci-cd |
| View all use cases | https://github.com/solutions/use-case |
| Healthcare | https://github.com/solutions/industry/healthcare |
| Financial services | https://github.com/solutions/industry/financial-services |
| Manufacturing | https://github.com/solutions/industry/manufacturing |
| Government | https://github.com/solutions/industry/government |
| View all industries | https://github.com/solutions/industry |
| View all solutions | https://github.com/solutions |
| AI | https://github.com/resources/articles?topic=ai |
| Software Development | https://github.com/resources/articles?topic=software-development |
| DevOps | https://github.com/resources/articles?topic=devops |
| Security | https://github.com/resources/articles?topic=security |
| View all topics | https://github.com/resources/articles |
| Customer stories | https://github.com/customer-stories |
| Events & webinars | https://github.com/resources/events |
| Ebooks & reports | https://github.com/resources/whitepapers |
| Business insights | https://github.com/solutions/executive-insights |
| GitHub Skills | https://skills.github.com |
| Documentation | https://docs.github.com |
| Customer support | https://support.github.com |
| Community forum | https://github.com/orgs/community/discussions |
| Trust center | https://github.com/trust-center |
| Partners | https://github.com/partners |
| GitHub SponsorsFund open source developers | https://github.com/sponsors |
| Security Lab | https://securitylab.github.com |
| Maintainer Community | https://maintainers.github.com |
| Accelerator | https://github.com/accelerator |
| Archive Program | https://archiveprogram.github.com |
| Topics | https://github.com/topics |
| Trending | https://github.com/trending |
| Collections | https://github.com/collections |
| Enterprise platformAI-powered developer platform | https://github.com/enterprise |
| GitHub Advanced SecurityEnterprise-grade security features | https://github.com/security/advanced-security |
| Copilot for BusinessEnterprise-grade AI features | https://github.com/features/copilot/copilot-business |
| Premium SupportEnterprise-grade 24/7 support | https://github.com/premium-support |
| Pricing | https://github.com/pricing |
| Search syntax tips | https://docs.github.com/search-github/github-code-search/understanding-github-code-search-syntax |
| documentation | https://docs.github.com/search-github/github-code-search/understanding-github-code-search-syntax |
|
Sign in
| https://patch-diff.githubusercontent.com/login?return_to=https%3A%2F%2Fgithub.com%2FESAPI%2Fesapi-java-legacy%2Fpull%2F895 |
|
Sign up
| https://patch-diff.githubusercontent.com/signup?ref_cta=Sign+up&ref_loc=header+logged+out&ref_page=%2F%3Cuser-name%3E%2F%3Crepo-name%3E%2Fvoltron%2Fpull_requests_fragments%2Fpull_request_layout&source=header-repo&source_repo=ESAPI%2Fesapi-java-legacy |
| Reload | https://patch-diff.githubusercontent.com/ESAPI/esapi-java-legacy/pull/895 |
| Reload | https://patch-diff.githubusercontent.com/ESAPI/esapi-java-legacy/pull/895 |
| Reload | https://patch-diff.githubusercontent.com/ESAPI/esapi-java-legacy/pull/895 |
|
ESAPI
| https://patch-diff.githubusercontent.com/ESAPI |
| esapi-java-legacy | https://patch-diff.githubusercontent.com/ESAPI/esapi-java-legacy |
|
Notifications
| https://patch-diff.githubusercontent.com/login?return_to=%2FESAPI%2Fesapi-java-legacy |
|
Fork
370
| https://patch-diff.githubusercontent.com/login?return_to=%2FESAPI%2Fesapi-java-legacy |
|
Star
641
| https://patch-diff.githubusercontent.com/login?return_to=%2FESAPI%2Fesapi-java-legacy |
|
Code
| https://patch-diff.githubusercontent.com/ESAPI/esapi-java-legacy |
|
Issues
122
| https://patch-diff.githubusercontent.com/ESAPI/esapi-java-legacy/issues |
|
Pull requests
4
| https://patch-diff.githubusercontent.com/ESAPI/esapi-java-legacy/pulls |
|
Discussions
| https://patch-diff.githubusercontent.com/ESAPI/esapi-java-legacy/discussions |
|
Actions
| https://patch-diff.githubusercontent.com/ESAPI/esapi-java-legacy/actions |
|
Projects
0
| https://patch-diff.githubusercontent.com/ESAPI/esapi-java-legacy/projects |
|
Wiki
| https://patch-diff.githubusercontent.com/ESAPI/esapi-java-legacy/wiki |
|
Security
Uh oh!
There was an error while loading. Please reload this page.
| https://patch-diff.githubusercontent.com/ESAPI/esapi-java-legacy/security |
| Please reload this page | https://patch-diff.githubusercontent.com/ESAPI/esapi-java-legacy/pull/895 |
|
Insights
| https://patch-diff.githubusercontent.com/ESAPI/esapi-java-legacy/pulse |
|
Code
| https://patch-diff.githubusercontent.com/ESAPI/esapi-java-legacy |
|
Issues
| https://patch-diff.githubusercontent.com/ESAPI/esapi-java-legacy/issues |
|
Pull requests
| https://patch-diff.githubusercontent.com/ESAPI/esapi-java-legacy/pulls |
|
Discussions
| https://patch-diff.githubusercontent.com/ESAPI/esapi-java-legacy/discussions |
|
Actions
| https://patch-diff.githubusercontent.com/ESAPI/esapi-java-legacy/actions |
|
Projects
| https://patch-diff.githubusercontent.com/ESAPI/esapi-java-legacy/projects |
|
Wiki
| https://patch-diff.githubusercontent.com/ESAPI/esapi-java-legacy/wiki |
|
Security
| https://patch-diff.githubusercontent.com/ESAPI/esapi-java-legacy/security |
|
Insights
| https://patch-diff.githubusercontent.com/ESAPI/esapi-java-legacy/pulse |
| Sign up for GitHub
| https://patch-diff.githubusercontent.com/signup?return_to=%2FESAPI%2Fesapi-java-legacy%2Fissues%2Fnew%2Fchoose |
| terms of service | https://docs.github.com/terms |
| privacy statement | https://docs.github.com/privacy |
| Sign in | https://patch-diff.githubusercontent.com/login?return_to=%2FESAPI%2Fesapi-java-legacy%2Fissues%2Fnew%2Fchoose |
| Jump to bottom | https://patch-diff.githubusercontent.com/ESAPI/esapi-java-legacy/pull/895#issue-comment-box |
| sabbott1877 | https://patch-diff.githubusercontent.com/sabbott1877 |
| ESAPI:develop | https://patch-diff.githubusercontent.com/ESAPI/esapi-java-legacy/tree/develop |
| sabbott1877:issue-894 | https://patch-diff.githubusercontent.com/sabbott1877/esapi-java-legacy/tree/issue-894 |
|
Fixes #894. Remove outdated commons-lang and commons-configuration dependencies with problematic CVEs.
| https://patch-diff.githubusercontent.com/ESAPI/esapi-java-legacy/pull/895#top |
| sabbott1877 | https://patch-diff.githubusercontent.com/sabbott1877 |
| ESAPI:develop | https://patch-diff.githubusercontent.com/ESAPI/esapi-java-legacy/tree/develop |
| sabbott1877:issue-894 | https://patch-diff.githubusercontent.com/sabbott1877/esapi-java-legacy/tree/issue-894 |
|
Conversation
11
| https://patch-diff.githubusercontent.com/ESAPI/esapi-java-legacy/pull/895 |
|
Commits
1
| https://patch-diff.githubusercontent.com/ESAPI/esapi-java-legacy/pull/895/commits |
|
Checks
0
| https://patch-diff.githubusercontent.com/ESAPI/esapi-java-legacy/pull/895/checks |
|
Files changed
| https://patch-diff.githubusercontent.com/ESAPI/esapi-java-legacy/pull/895/files |
| Please reload this page | https://patch-diff.githubusercontent.com/ESAPI/esapi-java-legacy/pull/895 |
| https://github.co/hiddenchars |
| https://patch-diff.githubusercontent.com/ESAPI/esapi-java-legacy/pull/{{ revealButtonHref }} |
|
| https://patch-diff.githubusercontent.com/sabbott1877 |
| sabbott1877 | https://patch-diff.githubusercontent.com/sabbott1877 |
| Jul 16, 2025 | https://patch-diff.githubusercontent.com/ESAPI/esapi-java-legacy/pull/895#issue-3236746812 |
| Please reload this page | https://patch-diff.githubusercontent.com/ESAPI/esapi-java-legacy/pull/895 |
|
| https://patch-diff.githubusercontent.com/sabbott1877 |
| Fixes | https://patch-diff.githubusercontent.com/ESAPI/esapi-java-legacy/pull/895/commits/a38b4b8eebc8423578ce27de182036539f4948bc |
| ESAPI#894 | https://github.com/ESAPI/esapi-java-legacy/issues/894 |
| . Remove outdated commons-lang and commons-configurati… | https://patch-diff.githubusercontent.com/ESAPI/esapi-java-legacy/pull/895/commits/a38b4b8eebc8423578ce27de182036539f4948bc |
| a38b4b8 | https://patch-diff.githubusercontent.com/ESAPI/esapi-java-legacy/pull/895/commits/a38b4b8eebc8423578ce27de182036539f4948bc |
| https://patch-diff.githubusercontent.com/sabbott1877 |
| sabbott1877 | https://patch-diff.githubusercontent.com/sabbott1877 |
| Jul 16, 2025 | https://patch-diff.githubusercontent.com/ESAPI/esapi-java-legacy/pull/895#issuecomment-3079563653 |
| Please reload this page | https://patch-diff.githubusercontent.com/ESAPI/esapi-java-legacy/pull/895 |
| comment | https://github.com/ESAPI/esapi-java-legacy/issues/872#issuecomment-2669411905 |
| #872 | https://github.com/ESAPI/esapi-java-legacy/issues/872 |
| Please reload this page | https://patch-diff.githubusercontent.com/ESAPI/esapi-java-legacy/pull/895 |
| https://patch-diff.githubusercontent.com/sabbott1877 |
| sabbott1877 | https://patch-diff.githubusercontent.com/sabbott1877 |
| Jul 16, 2025 | https://patch-diff.githubusercontent.com/ESAPI/esapi-java-legacy/pull/895#issuecomment-3079602331 |
| CVE-2025-48924 | https://www.cve.org/CVERecord?id=CVE-2025-48924 |
| Please reload this page | https://patch-diff.githubusercontent.com/ESAPI/esapi-java-legacy/pull/895 |
| https://patch-diff.githubusercontent.com/sabbott1877 |
| sabbott1877 | https://patch-diff.githubusercontent.com/sabbott1877 |
| Jul 16, 2025 | https://patch-diff.githubusercontent.com/ESAPI/esapi-java-legacy/pull/895#issuecomment-3079659140 |
| #872 | https://github.com/ESAPI/esapi-java-legacy/issues/872 |
| Please reload this page | https://patch-diff.githubusercontent.com/ESAPI/esapi-java-legacy/pull/895 |
| https://patch-diff.githubusercontent.com/sabbott1877 |
| sabbott1877 | https://patch-diff.githubusercontent.com/sabbott1877 |
|
Jul 16, 2025
| https://patch-diff.githubusercontent.com/ESAPI/esapi-java-legacy/pull/895#ref-issue-3229165298 |
|
Upgrade to use Commons-Lang3
#894
| https://patch-diff.githubusercontent.com/ESAPI/esapi-java-legacy/issues/894 |
| https://patch-diff.githubusercontent.com/kwwall |
| kwwall | https://patch-diff.githubusercontent.com/kwwall |
| Jul 21, 2025 | https://patch-diff.githubusercontent.com/ESAPI/esapi-java-legacy/pull/895#issuecomment-3095150782 |
| @sabbott1877 | https://github.com/sabbott1877 |
| #894 (comment) | https://github.com/ESAPI/esapi-java-legacy/issues/894#issuecomment-3095137858 |
| Please reload this page | https://patch-diff.githubusercontent.com/ESAPI/esapi-java-legacy/pull/895 |
| https://patch-diff.githubusercontent.com/in-fke |
| in-fke | https://patch-diff.githubusercontent.com/in-fke |
| Jul 21, 2025 | https://patch-diff.githubusercontent.com/ESAPI/esapi-java-legacy/pull/895#issuecomment-3095832380 |
| Please reload this page | https://patch-diff.githubusercontent.com/ESAPI/esapi-java-legacy/pull/895 |
| https://patch-diff.githubusercontent.com/kwwall |
| kwwall | https://patch-diff.githubusercontent.com/kwwall |
| Jul 21, 2025 | https://patch-diff.githubusercontent.com/ESAPI/esapi-java-legacy/pull/895#issuecomment-3096897663 |
| @in-fke | https://github.com/in-fke |
| #894 (comment) | https://github.com/ESAPI/esapi-java-legacy/issues/894#issuecomment-3095137858 |
| Please reload this page | https://patch-diff.githubusercontent.com/ESAPI/esapi-java-legacy/pull/895 |
| https://patch-diff.githubusercontent.com/in-fke |
| in-fke | https://patch-diff.githubusercontent.com/in-fke |
| Jul 21, 2025 | https://patch-diff.githubusercontent.com/ESAPI/esapi-java-legacy/pull/895#issuecomment-3097331766 |
| @in-fke | https://github.com/in-fke |
| #894 (comment) | https://github.com/ESAPI/esapi-java-legacy/issues/894#issuecomment-3095137858 |
| Please reload this page | https://patch-diff.githubusercontent.com/ESAPI/esapi-java-legacy/pull/895 |
| https://patch-diff.githubusercontent.com/xeno6696 |
| xeno6696 | https://patch-diff.githubusercontent.com/xeno6696 |
| Jul 22, 2025 | https://patch-diff.githubusercontent.com/ESAPI/esapi-java-legacy/pull/895#issuecomment-3103613756 |
| @in-fke | https://github.com/in-fke |
| #894 (comment) | https://github.com/ESAPI/esapi-java-legacy/issues/894#issuecomment-3095137858 |
| Please reload this page | https://patch-diff.githubusercontent.com/ESAPI/esapi-java-legacy/pull/895 |
| https://patch-diff.githubusercontent.com/kwwall |
| kwwall | https://patch-diff.githubusercontent.com/kwwall |
| Jul 22, 2025 | https://patch-diff.githubusercontent.com/ESAPI/esapi-java-legacy/pull/895#issuecomment-3103895319 |
| Please reload this page | https://patch-diff.githubusercontent.com/ESAPI/esapi-java-legacy/pull/895 |
| Please reload this page | https://patch-diff.githubusercontent.com/ESAPI/esapi-java-legacy/pull/895 |
| https://patch-diff.githubusercontent.com/jeremiahjstacey |
| jeremiahjstacey | https://patch-diff.githubusercontent.com/jeremiahjstacey |
|
Aug 1, 2025
| https://patch-diff.githubusercontent.com/ESAPI/esapi-java-legacy/pull/895#ref-issue-3283148082 |
|
commons-lang and commons-configuration dependencies with CVEs
#896
| https://patch-diff.githubusercontent.com/ESAPI/esapi-java-legacy/issues/896 |
| https://patch-diff.githubusercontent.com/duttonw |
| duttonw | https://patch-diff.githubusercontent.com/duttonw |
|
Oct 9, 2025
| https://patch-diff.githubusercontent.com/ESAPI/esapi-java-legacy/pull/895#ref-pullrequest-3497530520 |
|
Patch CVE-2025-48924 : commons-lang:2.6 to commons-lang3:3.19.0
#898
| https://patch-diff.githubusercontent.com/ESAPI/esapi-java-legacy/pull/898 |
| https://patch-diff.githubusercontent.com/duttonw |
| duttonw | https://patch-diff.githubusercontent.com/duttonw |
| Oct 9, 2025 | https://patch-diff.githubusercontent.com/ESAPI/esapi-java-legacy/pull/895#issuecomment-3384021356 |
| CVE-2025-48924 | https://github.com/advisories/GHSA-j288-q9x7-2f5v |
| GHSA-j288-q9x7-2f5v | https://github.com/advisories/GHSA-j288-q9x7-2f5v |
| https://ossindex.sonatype.org/vulnerability/CVE-2025-48924 | https://ossindex.sonatype.org/vulnerability/CVE-2025-48924 |
| [CVE-2025-48924] CWE-674: Uncontrolled Recursion | https://ossindex.sonatype.org/vulnerability/CVE-2025-48924?component-type=maven&component-name=commons-lang%2Fcommons-lang&utm_source=dependency-check&utm_medium=integration&utm_content=12.1.3 |
| http://web.nvd.nist.gov/view/vuln/detail?vulnId=CVE-2025-48924 | http://web.nvd.nist.gov/view/vuln/detail?vulnId=CVE-2025-48924 |
| GHSA-j288-q9x7-2f5v | https://github.com/advisories/GHSA-j288-q9x7-2f5v |
| Please reload this page | https://patch-diff.githubusercontent.com/ESAPI/esapi-java-legacy/pull/895 |
| https://patch-diff.githubusercontent.com/xeno6696 |
| xeno6696 | https://patch-diff.githubusercontent.com/xeno6696 |
| Oct 15, 2025 | https://patch-diff.githubusercontent.com/ESAPI/esapi-java-legacy/pull/895#issuecomment-3408608522 |
| Please reload this page | https://patch-diff.githubusercontent.com/ESAPI/esapi-java-legacy/pull/895 |
| CVE-2025-48924 | https://github.com/advisories/GHSA-j288-q9x7-2f5v |
| @jeremiahjstacey | https://github.com/jeremiahjstacey |
| Please reload this page | https://patch-diff.githubusercontent.com/ESAPI/esapi-java-legacy/pull/895 |
| Sign up for free | https://patch-diff.githubusercontent.com/join?source=comment-repo |
| Sign in to comment | https://patch-diff.githubusercontent.com/login?return_to=https%3A%2F%2Fgithub.com%2FESAPI%2Fesapi-java-legacy%2Fpull%2F895 |
| Please reload this page | https://patch-diff.githubusercontent.com/ESAPI/esapi-java-legacy/pull/895 |
|
| https://patch-diff.githubusercontent.com/sabbott1877 |
|
| https://patch-diff.githubusercontent.com/kwwall |
|
| https://patch-diff.githubusercontent.com/in-fke |
|
| https://patch-diff.githubusercontent.com/xeno6696 |
|
| https://patch-diff.githubusercontent.com/duttonw |
|
| https://github.com |
| Terms | https://docs.github.com/site-policy/github-terms/github-terms-of-service |
| Privacy | https://docs.github.com/site-policy/privacy-policies/github-privacy-statement |
| Security | https://github.com/security |
| Status | https://www.githubstatus.com/ |
| Community | https://github.community/ |
| Docs | https://docs.github.com/ |
| Contact | https://support.github.com?tags=dotcom-footer |