You signed in with another tab or window. Reload to refresh your session.You signed out in another tab or window. Reload to refresh your session.You switched accounts on another tab or window. Reload to refresh your session.Dismiss alert
Apache Tika versions >= 1.13, < 3.2.2 contain a PDF processing vulnerability. I guess it's unlikely that this functionality is used by the pact framework, but it makes security scanners very upset, and the actual fix is in tika-core.
Would it be possible to switch to v3.2.2 or higher of Tika?
Worth noting that we have tried forcing the existing pact framework to use v3.2.3 and it results in some pact request bodies being incorrectly Base64 encoded, so it probably isn't a completely trivial update.
blakeyp, sw-mattw, CarlyG55, mikebeeby, thebauSoftwire and 6 more