qunarcorp / bistoury

Bistoury是去哪儿网的java应用生产问题诊断工具,提供了一站式的问题诊断方案
GNU General Public License v3.0
4.02k stars 825 forks source link

There is a vulnerability in Netty Project 3.10.5.Final,upgrade recommended #134

Open QiAnXinCodeSafe opened 3 years ago

QiAnXinCodeSafe commented 3 years ago

https://github.com/qunarcorp/bistoury/blob/b83b87032c3a394df31300a4fe3a1123cf6d7917/pom.xml#L88

CVE-2019-20445 CVE-2019-20444 CVE-2019-16869 CVE-2021-21409 CVE-2021-21290 CVE-2021-21295

Recommended upgrade version:4.1.61.Final