Kyligence / calcite

a tailored Apache Calcite for Apache Kylin, more details at http://mail-archives.apache.org/mod_mbox/kylin-dev/201704.mbox/%3CCAF7etT=wEBPKm4C_6ffssQ0=kEhD=j1jz3O9DpjC+Zu9xWU=5A@mail.gmail.com%3E . Isn't AtopCalcite in Kylin enough? It depends on tomcat feature that's no longer supported in tomcat 8
Apache License 2.0
14 stars 53 forks source link

[Snyk] Security upgrade org.eclipse.jetty:jetty-server from 9.2.15.v20160210 to 10.0.10 #291

Open snyk-bot opened 2 years ago

snyk-bot commented 2 years ago

Snyk has created this PR to fix one or more vulnerable packages in the `maven` dependencies of this project.

Changes included in this PR

Vulnerabilities that will be fixed

With an upgrade:
Severity Priority Score (*) Issue Upgrade Breaking Change Exploit Maturity
low severity 421/1000
Why? Recently disclosed, Has a fix available, CVSS 2.7
Improper Input Validation
SNYK-JAVA-ORGECLIPSEJETTY-2945452
org.eclipse.jetty:jetty-server:
9.2.15.v20160210 -> 10.0.10
No No Known Exploit
high severity 651/1000
Why? Recently disclosed, Has a fix available, CVSS 7.3
Improper Resource Shutdown or Release
SNYK-JAVA-ORGECLIPSEJETTY-2945458
org.eclipse.jetty:jetty-server:
9.2.15.v20160210 -> 10.0.10
No No Known Exploit
high severity 651/1000
Why? Recently disclosed, Has a fix available, CVSS 7.3
Improper Resource Shutdown or Release
SNYK-JAVA-ORGECLIPSEJETTY-2945459
org.eclipse.jetty:jetty-server:
9.2.15.v20160210 -> 10.0.10
No No Known Exploit

(*) Note that the real score may have changed since the PR was raised.

Check the changes in this PR to ensure they won't cause issues with your project.


Note: You are seeing this because you or someone else with access to this repository has authorized Snyk to open fix PRs.

For more information: 🧐 View latest project report

🛠 Adjust project settings

📚 Read more about Snyk's upgrade and patch logic


Learn how to fix vulnerabilities with free interactive lessons:

🦉 Learn about vulnerability in an interactive lesson of Snyk Learn.