pravega / schema-registry

Pravega Schema Registry repository
Apache License 2.0
15 stars 23 forks source link

Upgrade dependencies with vulnerabilities #275

Closed anju-c-das closed 1 year ago

anju-c-das commented 1 year ago

Problem description Upgrade dependencies in Schema registry which could have possible CVEs

Library | CVE Version -- | -- jackson-databind | 2.13.4

Problem location gradle.properties

Suggestions for an improvement upgrade lib versions to suggested versions to mitigate the CVEs.