confluentinc / kafka-connect-jdbc

Kafka Connect connector for JDBC-compatible databases
Other
1.01k stars 953 forks source link

CVE-2024-1597 Postgresql Version Vulnerability #1400

Closed saisameeravoleti closed 4 months ago

saisameeravoleti commented 4 months ago

Hello

A recent vulnerability CVE-2024-1597 has been detected for the postgresql version 42.4.3 with CVSS score 10. The current version of the postgresql used in the repo is 42.4.3

The postgresql versions needs to be updated in the repository to mitigate the security issues and fixed versions include versions greater than 42.2.8

janjwerner-confluent commented 4 months ago

@saisameeravoleti Thank you, we are aware of this issue and expect to resolve it in the upcoming connector release.