qunarcorp / bistoury

Bistoury是去哪儿网的java应用生产问题诊断工具,提供了一站式的问题诊断方案
GNU General Public License v3.0
4k stars 824 forks source link

There is a vulnerability in Apache ZooKeeper 3.4.6,upgrade recommended #137

Open QiAnXinCodeSafe opened 2 years ago

QiAnXinCodeSafe commented 2 years ago

https://github.com/qunarcorp/bistoury/blob/b83b87032c3a394df31300a4fe3a1123cf6d7917/pom.xml#L85

CVE-2017-5637 CVE-2018-8012 CVE-2016-5017 CVE-2019-0201 CVE-2021-21409 CVE-2014-0085

Recommended upgrade version:3.5.5.7.1.1.2013-1