RADAR-base / radar-output-restructure

Reads avro files in HDFS and outputs json or csv per topic per user in local file system
Apache License 2.0
1 stars 0 forks source link

Information Exposure SNYK-JAVA-COMAZURE-2949175 #526

Closed github-actions[bot] closed 2 years ago

github-actions[bot] commented 2 years ago

Overview

com.azure:azure-storage-blob is a Microsoft Azure client library for Blob Storage

Affected versions of this package are vulnerable to Information Exposure. Attackers can expose the contents of a file or blob when client-side encryption is in use.

NOTE: The vendor advises that client-side encryption is a very uncommon use case.

Remediation

Upgrade com.azure:azure-storage-blob to version 12.18.0 or higher.

References