Skip to content

Conversation

@yeikel
Copy link

@yeikel yeikel commented Aug 26, 2025

Updates

  • Summary

Comments
It is unclear to me what the value of the current title is as this CVE is fixed in 9.4.57.v20241219, which technically may mean that it is "still supported"

@github
Copy link
Collaborator

github commented Aug 26, 2025

Hi there @joakime! A community member has suggested an improvement to your security advisory. If approved, this change will affect the global advisory listed at github.com/advisories. It will not affect the version listed in your project repository.

This change will be reviewed by our Security Curation Team. If you have thoughts or feedback, please share them in a comment here! If this PR has already been closed, you can start a new community contribution for this advisory

@github-actions github-actions bot changed the base branch from main to yeikel/advisory-improvement-6047 August 26, 2025 17:16
@github-actions
Copy link

👋 This pull request has been marked as stale because it has been open with no activity. You can: comment on the issue or remove the stale label to hold stale off for a while, add the Keep label to hold stale off permanently, or do nothing. If you do nothing this pull request will be closed eventually by the stale bot. Please see CONTRIBUTING.md for more policy details.

@github-actions github-actions bot added the Stale label Sep 11, 2025
@github-actions github-actions bot closed this Sep 27, 2025
@joakime
Copy link

joakime commented Sep 27, 2025

It is unclear to me what the value of the current title is as this CVE is fixed in 9.4.57.v20241219, which technically may mean that it is "still supported"

The text **UNSUPPORTED WHEN ASSIGNED** means that the version you are using is unsupported. (This CVE specific terminology, if you see this, then you are using an unsupported version of your piece of software)
CVE's with this terminology can also have no publicly patched releases for your out of support version of that software.

All versions of Jetty prior to Jetty 12 are now at EOL (End of Life).
They should not be used anymore without a support contract.

@joakime
Copy link

joakime commented Sep 27, 2025

Example of this terminology in use.

https://github.com/advisories?query=UNSUPPORTED+WHEN+ASSIGNED

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

Projects

None yet

Development

Successfully merging this pull request may close these issues.

4 participants