CIB seven 2.0.7 EE - Release Notes
Release Notes
Release Date: January 22, 2026
Highlights
- Updated docker image with CIB seven to resolve CVE in third party libraries
Technical Updates
Dependency Updates
- Update
Spring Bootfrom3.5.7to3.5.9 - Update
log4jto2.25.3 - Update
tomcatfrom10.1.48to10.1.49 - Update
jacksonfrom2.15.2to2.19.4
Resolved CVE Vulnerabilities
- CVE-2025-66566 - Fixed in
org.lz4andnettymodules for Wildfly. - CVE-2025-68161 - Fixed in
log4jby updating to2.25.3. - CVE-2025-13151 - Fixed Stack-based buffer overflow in
libtasn1by updating to4.21.0-r0. The vulnerable library was included transitively via the Alpine base image.