apache / pulsar-helm-chart

Official Apache Pulsar Helm Chart
https://pulsar.apache.org/
Apache License 2.0
212 stars 224 forks source link

Use Pulsar 3.0.7 image by default to address CVE-2024-47561 #536

Closed lhotari closed 1 month ago

lhotari commented 1 month ago

Motivation

Use most recent Pulsar 3.0.7 image which contains the fix for critical 9.3/10 level RCE vulnerability in Avro Java SDK <1.11.4, CVE-2024-47561

Modifications

Bump appVersion to 3.0.7

Verifying this change