[Apollo] Advisories Statistics light light Login

RLSA-2026:60215

Security Mirrored from RHSA-2026:60215
Issued at: 2026-08-27
Updated at: 2026-08-28

Advisory content derived from Red Hat RHSA-2026:60215, © Red Hat, Inc., used under CC BY 4.0, with modifications.

Synopsis

Moderate: assertj-core security update



Description

A rich and intuitive set of strongly-typed assertions to use for unit testing (either with JUnit or TestNG).

Security Fix(es):

* assertj: AssertJ: Information disclosure and denial of service via XML External Entity (XXE) (CVE-2026-24400)

For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.



Affected products

Rocky Linux 9 aarch64 Rocky Linux 9 ppc64le Rocky Linux 9 s390x Rocky Linux 9 x86_64

Fixes

2433116

CVEs

CVE-2026-24400

Affected packages

Rocky Linux 9 x86_64 - AppStream

assertj-core-0:3.19.0-9.el9_8.1.noarch.rpm assertj-core-0:3.19.0-9.el9_8.1.src.rpm

Rocky Linux 9 aarch64 - AppStream

assertj-core-0:3.19.0-9.el9_8.1.noarch.rpm assertj-core-0:3.19.0-9.el9_8.1.src.rpm

Rocky Linux 9 s390x - AppStream

assertj-core-0:3.19.0-9.el9_8.1.noarch.rpm assertj-core-0:3.19.0-9.el9_8.1.src.rpm

Rocky Linux 9 ppc64le - AppStream

assertj-core-0:3.19.0-9.el9_8.1.noarch.rpm assertj-core-0:3.19.0-9.el9_8.1.src.rpm