pravega / schema-registry

Pravega Schema Registry repository
Apache License 2.0
15 stars 23 forks source link

Upgrade snakeyaml dependency with vulnerabilities #279

Closed a6dulaleem closed 1 year ago

a6dulaleem commented 1 year ago

Problem description
Upgrade dependencies in Schema registry which could have possible CVEs

Library | CVE Version -- | -- snakeyaml | 2.0

Problem location
gradle.properties

Suggestions for an improvement
upgrade lib versions to suggested versions to mitigate the CVEs.