Commit
This commit does not belong to any branch on this repository, and may belong to a fork outside of the repository.
Upgrade jsch from 0.1.52 to 0.1.55 to fix CVE-2016-5725
Upgrading the jsch library from version 0.1.52 to 0.1.55 addresses CVE-2016-5725, which is a directory traversal vulnerability in JCraft JSch before version 0.1.54. This vulnerability allowed remote SFTP servers to write to arbitrary files on Windows when using ChannelSftp.OVERWRITE mode, via a ..\ (dot dot backslash) in a recursive GET command.
- Loading branch information