The Burp Suite User Forum was discontinued on the 1st November 2024.

Burp Suite User Forum

For support requests, go to the Support Center. To discuss with other Burp users, head to our Discord page.

SUPPORT CENTER DISCORD

CVE-2022-42889 impact on Burp

SecTer | Last updated: Oct 21, 2022 09:27AM UTC

Above CVE is about a vulnerability in Apache Commons Text which is fixed in version 1.10. However, Burp Enterprise uses version 1.7 of this library. ``` ./burp/enterpriseServer/2022.9-10760/lib/commons-text-1.7.jar ./burp/databaseServer/2022.9-10760/lib/commons-text-1.7.jar ``` When will an update be available?

Alex, PortSwigger Agent | Last updated: Oct 21, 2022 10:05AM UTC