-
New Feature
-
Resolution: Done
-
Major
-
Freshly, 8.0.5, 8.5.0, 8.5.1
-
Security Level: Jimmy
-
None
https://nvd.nist.gov/vuln/detail/CVE-2016-1000031
https://issues.apache.org/jira/browse/FILEUPLOAD-279
fixed in 1.3.3
Workaround
manually update the dependency to 1.3.3
<dependency> <groupId>commons-fileupload</groupId> <artifactId>commons-fileupload</artifactId> <version>1.3.3</version> </dependency>