pravega / schema-registry

Pravega Schema Registry repository
Apache License 2.0
15 stars 23 forks source link

Upgrade dependencies with vulnerabilities #281

Closed anishakj closed 11 months ago

anishakj commented 12 months ago

Problem description

Problem description Upgrade dependencies in Schema registry which could have possible CVEs

Library CVE Version
checkstyleToolVersion 10.12.3
protobufUtilVersion 3.24.3
guavaVersion 32.0.1-jre
swaggerJersey2JaxrsVersion 1.6.11

Problem location

gradle.properties Suggestions for an improvement

upgrade lib versions to suggested versions to mitigate the CVEs.