From 67e35cb8bcd4240bf02ebf02aafd9bd7daf9e110 Mon Sep 17 00:00:00 2001 From: maximthomas Date: Tue, 9 Dec 2025 16:46:26 +0300 Subject: [PATCH] CVE-2025-66453 Rhino has high CPU usage and potential DoS --- pom.xml | 3 ++- script/javascript/pom.xml | 2 +- 2 files changed, 3 insertions(+), 2 deletions(-) diff --git a/pom.xml b/pom.xml index fe269fc87..1160ab7ac 100644 --- a/pom.xml +++ b/pom.xml @@ -205,7 +205,8 @@ 2.15.4 2.0.17 1.6.11 - 1.7.14 + 1.7.15.1 + 1.7.15_1 11.0.25 3.0.1 5.0.0 diff --git a/script/javascript/pom.xml b/script/javascript/pom.xml index a4b792166..23ef91bfe 100644 --- a/script/javascript/pom.xml +++ b/script/javascript/pom.xml @@ -67,7 +67,7 @@ org.apache.servicemix.bundles org.apache.servicemix.bundles.rhino - ${rhino.version}_2 + ${rhino.servicemix.version}