pravega / schema-registry

Pravega Schema Registry repository
Apache License 2.0
15 stars 23 forks source link

Issue 292: Upgrades avro version to fix Vulnerabilities #293

Closed a6dulaleem closed 9 months ago

a6dulaleem commented 9 months ago

Problem description Upgrade dependencies in Schema registry which could have possible CVEs

Library current version CVE fixed Version
avro 1.11.1 1.11.3

Problem location gradle.properties

Suggestions for an improvement upgrade lib versions to suggested versions to mitigate the CVEs.

Purpose of the change Fix https://github.com/pravega/schema-registry/issues/292

a6dulaleem commented 9 months ago

ran schema registry build it ran successfully and build number is 192