google / rejoiner

Generates a unified GraphQL schema from gRPC microservices and other Protobuf sources
https://google.github.io/rejoiner/
Apache License 2.0
3.67k stars 143 forks source link

There is a vulnerability in Jetty: Java based HTTP/1.x, HTTP/2, Servlet, WebSocket Server 9.3.8.v20160314,upgrade recommended #116

Open QiAnXinCodeSafe opened 3 years ago

QiAnXinCodeSafe commented 3 years ago

https://github.com/google/rejoiner/blob/4c7e1b3affaab92fc6a62636b7f26511c693f9bc/examples-gradle/build.gradle#L44

https://github.com/google/rejoiner/blob/4c7e1b3affaab92fc6a62636b7f26511c693f9bc/examples-gradle/build.gradle#L47

CVE-2017-7658 CVE-2017-7657 CVE-2016-4800 CVE-2017-9735

Recommended upgrade version: 9.3.29.v20201019