Skip to content

Please provide WComponents compatible with Java 8 that removes susceptibility to critical Apache Tika vulnerability CVE-2025-66516 #1876

@david-a-campbell-aus

Description

@david-a-campbell-aus

Please provide WComponents compatible with Java 8 that removes susceptibility to critical vulnerability CVE-2025-66516

WFileWidget and WMultiFileWidget affected through use of class FileUtil which depends on Tika

Critical matter, we need to remediate some immediate vulnerabilities in client-facing systems in relation to uploaded file content.

Metadata

Metadata

Assignees

No one assigned

    Labels

    No labels
    No labels

    Type

    No type
    No fields configured for issues without a type.

    Projects

    No projects

    Milestone

    No milestone

    Relationships

    None yet

    Development

    No branches or pull requests

    Issue actions