Security fix for CVE issue with dependency.
On we released version 1.4.1 of Project Documentation Macros!
Installation Instructions
Simply install the app via the Atlassian Marketplace or the downloaded OBR artifact.
Upgrade Instructions
Simply update the app via the Atlassian Marketplace or the downloaded OBR artifact.
This version supports the smallest LTS of Confluence 8.5.20 up to the latest Confluence version of 9.4.0.
It is recommended to update Confluence to the next LTS version (9.2.x) if you are using a smaller version of Confluence.
List of Changes
Key | Summary | T | P | Status | Resolution | Description |
---|---|---|---|---|---|---|
CONFMAC-28 | Update to Confluence Latest Releases |
|
![]() |
Done | Done |
Update dependencies to the latest Confluence 9.2.6 and support for Confluence 9.5.2. Update Swagger dependencies to the latest versions. Update AMPS and dependency checks to latest version. |
CONFMAC-29 | CVE-2025-48924 affects pkg:maven/org.apache.commons/commons-lang3@3.17.0 |
|
|
Done | Done |
The app uses the platform dependency to commons-lang in a version that has been reported vulnerable to CVE-2025-48924. For detailed information, please refer to https://lists.apache.org/thread/bgv0lpswokgol11tloxnjfzdl7yrc1g1. The vulnerability is reported to be fixed in 3.18.0 and above. |