Root has patched CVE-2020-10683 in the io.root.dom4j:dom4j package for Root:Maven. Multiple fixed versions available.
{ "distro_version": "", "distro": "maven", "source": "Root" }
true
[ "1.1-root.io.1" ]
"root.io.1"
1.0
"https://api.root.io/external/osv/ROOT-APP-MAVEN-CVE-2020-10683.json"
"1.1"