datastax / starlight-for-kafka

DataStax - Starlight for Kafka
Apache License 2.0
17 stars 12 forks source link

Upgrade Avro to 1.11.4 to address CVE-2024-47561 in 2.10_ds #100

Closed nikhil-ctds closed 1 month ago

nikhil-ctds commented 1 month ago

Motivation

Avro 1.11.3 contains critical 9.3/10 level RCE vulnerability in Avro Java SDK <1.11.4, CVE-2024-47561>