reactor / reactor-netty

TCP/HTTP/UDP/QUIC client/server with Reactor over Netty
https://projectreactor.io
Apache License 2.0
2.58k stars 643 forks source link

reactor-netty-http dependency update io.netty 4.1.66.Final+ #1795

Closed altfatterz closed 3 years ago

altfatterz commented 3 years ago

JFrog XRay reported High Security vulnerability for using 4.1.65.Final for issue already fixed in 4.1.66.Final

https://github.com/netty/netty/pull/11429

Could you upgrade to at least to io.netty 4.1.66.Final ?

violetagg commented 3 years ago

@altfatterz Please check https://github.com/reactor/reactor-netty/releases, the latest 1.0.10 and 0.9.22.RELEASE depend on 4.1.66.Final