Details
Assignee
Michael OffnerMichael OffnerReporter
Zac SpitzerZac SpitzerLabels
New Issue warning screen
Before you create a new Issue, please post to the mailing list first https://dev.lucee.org
Once the issue has been verified, one of the Lucee team will ask you to file an issue
Sprint
Priority
Minor
Details
Details
Assignee
Michael Offner
Michael OffnerReporter
Zac Spitzer
Zac SpitzerLabels
New Issue warning screen
Before you create a new Issue, please post to the mailing list first https://dev.lucee.org
Once the issue has been verified, one of the Lucee team will ask you to file an issue
Sprint
Priority
Created 26 April 2022 at 08:56
Updated 6 March 2025 at 11:35
https://github.com/ESAPI/esapi-java-legacy/releases/tag/esapi-2.5.2.0
There is an associated CVE, but that’s for antisamy which we don’t directly use yet (https://luceeserver.atlassian.net/browse/LDEV-838 )
Also drops Log4j
https://github.com/ESAPI/esapi-java-legacy/blob/develop/documentation/esapi4java-core-2.5.2.0-release-notes.txt