From da4e87d97f1050009223dfee427d46bbb15d2b06 Mon Sep 17 00:00:00 2001
From: Gerard Olenski <31597546+gerardolenski@users.noreply.github.com>
Date: Wed, 18 Jun 2025 15:43:45 +0200
Subject: [PATCH] PRODSEC-10088 Fix CVE Vulnerability CVE-2025-31672 in
poi-ooxml-5.2.5.jar (#1085)
---
pom.xml | 10 +++++++---
1 file changed, 7 insertions(+), 3 deletions(-)
diff --git a/pom.xml b/pom.xml
index 42fca363..ca7137ed 100644
--- a/pom.xml
+++ b/pom.xml
@@ -26,11 +26,10 @@
${project.version}
2.18.2
2.9.2
- 5.2.5
+ 5.4.1
+ 2.19.0
1.0.0-alpha5
2.3
-
- 1.5.16
1.79
@@ -137,6 +136,11 @@
+
+ commons-io
+ commons-io
+ ${dependency.commons-io.version}
+
org.bouncycastle
bcmail-jdk18on