exasol / glue-connector

An AWS Glue Studio Connector for Accessing Exasol Database
MIT License
1 stars 1 forks source link

🔐 CVE-2024-47561: org.apache.avro:avro:jar:1.11.3:provided #113

Open github-actions[bot] opened 1 month ago

github-actions[bot] commented 1 month ago

Summary

Schema parsing in the Java SDK of Apache Avro 1.11.3 and previous versions allows bad actors to execute arbitrary code. Users are recommended to upgrade to version 1.11.4  or 1.12.0, which fix this issue.

CVE: CVE-2024-47561 CWE: CWE-502

References