Root has patched CVE-2017-20189 in the io.root.org.clojure:clojure package for Root:Maven. Multiple fixed versions available.
{ "source": "Root", "severity": "CRITICAL", "distro": "maven", "distro_version": "" }
"root.io.1"
"https://api.root.io/external/osv/ROOT-APP-MAVEN-CVE-2017-20189.json"
true
1.0
"1.9.0"
[ "1.9.0-root.io.1" ]
""
"1.9.0-aikido.1"
[ "1.9.0-aikido.1" ]