Why don't CI services upgrade to Maven 3.0.5?

Do they just wait for someone to exploit the vulnerability?
This commit is contained in:
Trustin Lee 2013-03-11 09:11:11 +09:00
parent 5d65bbc0a9
commit 27b2f1304b

View File

@ -273,7 +273,7 @@
<version>[1.7.0,)</version>
</requireJavaVersion>
<requireMavenVersion>
<version>[3.0.5,)</version>
<version>[3.0.4,)</version>
</requireMavenVersion>
</rules>
</configuration>