Skip to content

Commit c7234ed

Browse files
committed
xmlsec was updated to 2.2.6 in elasticsearch 7.17.24, and no longer has the CVE-2021-40690 vulnerability that xmlsec 2.1.4 had
1 parent 86d38b8 commit c7234ed

File tree

1 file changed

+0
-3
lines changed

1 file changed

+0
-3
lines changed

Dockerfile

Lines changed: 0 additions & 3 deletions
Original file line numberDiff line numberDiff line change
@@ -6,9 +6,6 @@ ARG azul_docker_elasticsearch_internal_version
66

77
RUN apt-get update && apt-get upgrade -y
88

9-
# https://nvd.nist.gov/vuln/detail/CVE-2021-40690
10-
RUN rm /usr/share/elasticsearch/modules/x-pack-{identity-provider,security}/xmlsec-2.1.4.jar
11-
129
# https://nvd.nist.gov/vuln/detail/CVE-2023-1370
1310
RUN rm /usr/share/elasticsearch/modules/x-pack-security/nimbus-jose-jwt-9.23.jar
1411

0 commit comments

Comments
 (0)