Closed arihant-confluent closed 1 year ago
Thank you for your submission! We really appreciate it. Like many open source projects, we ask that you sign our Contributor License Agreement before we can accept your contribution.
You have signed the CLA already but the status is still pending? Let us recheck it.
Problem
Hadoop Common 3.2.4 has a vulnerability Hadoop Common 3.3.6 uses hadoop shaded guava in 3.3.6 version in sftp connector use case. Hadoop guava also has a vulnerability and can't be used Without hadoop guava it fails with error:
Solution
Added Hadoop-shaded guava with the latest guava version as per the common pom.
Does this solution apply anywhere else?
If yes, where?
Test Strategy
Testing done:
Release Plan