Why don't CI services upgrade to Maven 3.0.5?

Do they just wait for someone to exploit the vulnerability?
This commit is contained in:
Trustin Lee 2013-03-11 09:11:11 +09:00
parent 5d65bbc0a9
commit 27b2f1304b

View File

@ -273,7 +273,7 @@
<version>[1.7.0,)</version> <version>[1.7.0,)</version>
</requireJavaVersion> </requireJavaVersion>
<requireMavenVersion> <requireMavenVersion>
<version>[3.0.5,)</version> <version>[3.0.4,)</version>
</requireMavenVersion> </requireMavenVersion>
</rules> </rules>
</configuration> </configuration>