Skip to main content Skip to complementary content

Notable fixes and Known issues in Talend Remote Engine R2024-07

Security enhancements

Issue Description
TMC-27634 The following security dependencies have been upgraded:
  • Apache CXF: 3.6.2 to 3.6.3
    • CVE-2024-28752 - SSRF vulnerability using the Aegis DataBinding in Apache CXF
  • Spring Web: 6.1.4 to 6.1.8
    • CVE-2024-22259 - Server Side Request Forgery (SSRF)
  • Spring Web: 6.1.5 to 6.1.8
    • CVE-2024-22262 - Open Redirect
  • Apache Commons Configuration 2: 2.9.0 to 2.10.1
    • CVE-2024-29133 - Out-of-Bounds Write
    • CVE-2024-29131 - Out-of-Bounds Write
  • Bouncy Castle Provider: 1.77 to 1.78.1
    • CVE-2024-30172 - Denial Of Service (DoS)
    • CVE-2024-30171 - Observable Discrepancy
    • CVE-2024-29857 - Denial Of Service (DoS)
  • Apache Karaf: 4.4.5 to 4.4.6
  • Apache ActiveMQ client: 5.18.3 to 5.18.4
  • Apache Camel: 3.22.1 to 3.22.2
  • Apache Commons Codecs: 1.16.1 to 1.17.0
  • Apache Commons Compress: 1.26.0 to 1.26.2
  • Apache Commons IO: 2.15.1 to 2.16.1
  • Apache Commons Text: 1.11.0 to 1.12.0
  • Google Guava: 33.0.0-jre to 33.2.1-jre
  • GSON: 2.10.1 to 2.11.0
  • Jackson: 2.16.1 to 2.17.1
  • OSHI: 6.4.13 to 6.6.1
  • picocli: 4.7.5 to 4.7.6

Notable fixes

Issue Description
APPINT-36482
This ticket resolves an issue where a Route with cTalendJob invoking tPGPDecrypt fails during deployment in Talend Management Console.
TPRUN-7022
OSGI artifacts were not being deleted during undeployments or failed deployments from the ${karaf.data}/dsrunner/exec/osgi directory. This issue has been fixed.
TMC-27633 Previously, an exception was not thrown because the return value of java.lang.Exception.getCause() was null. This problem has been addressed and corrected.
TMC-27068 This ticket fixes a phase switch issue logged with the following message:
java.lang.IllegalArgumentException: Cannot switch from phase EXECUTING to DEPLOYING
TMC-27658 An issue where a task was executed twice in Talend Management Console has been resolved.

Did this page help you?

If you find any issues with this page or its content – a typo, a missing step, or a technical error – please let us know!