From ee0f491f071da3f241cd4199298388834e2677f9 Mon Sep 17 00:00:00 2001 From: Trey Chadick Date: Mon, 16 Mar 2026 16:17:22 -0700 Subject: [PATCH] Suppress PDFBox CVE (#1308) https://nvd.nist.gov/vuln/detail/CVE-2026-23907 --- dependencyCheckSuppression.xml | 33 +++++++++++++++++++++++++++++++++ 1 file changed, 33 insertions(+) diff --git a/dependencyCheckSuppression.xml b/dependencyCheckSuppression.xml index b181166d9d..27621b7705 100644 --- a/dependencyCheckSuppression.xml +++ b/dependencyCheckSuppression.xml @@ -194,4 +194,37 @@ ^pkg:maven/org\.mozilla/rhino@.*$ CVE-2025-66453 + + + + + ^pkg:maven/org\.apache\.pdfbox/pdfbox@.*$ + CVE-2026-23907 + + + + ^pkg:maven/org\.apache\.pdfbox/pdfbox-debugger@.*$ + CVE-2026-23907 + + + + ^pkg:maven/org\.apache\.pdfbox/pdfbox-io@.*$ + CVE-2026-23907 + + + + ^pkg:maven/org\.apache\.pdfbox/pdfbox-tools@.*$ + CVE-2026-23907 +