scylladb / scylla-jmx

Scylla JMX proxy
GNU Affero General Public License v3.0
29 stars 53 forks source link

Old version of snakeyaml dependency #222

Closed avelanarius closed 11 months ago

avelanarius commented 11 months ago

scylla-jmx (as of https://github.com/scylladb/scylla-jmx/commit/8d15342edca24dfd28cc26b99cdb66324edbaaed) uses snakeyaml in version 1.26. This dependency is flagged by security scanners and should be updated.

The fix should be backported to older Scylla versions.