scylladb / scylla-tools-java

Apache Cassandra, supplying tools for Scylla
Apache License 2.0
53 stars 85 forks source link

Old version of `Netty` dependencies #363

Closed yaronkaikov closed 11 months ago

yaronkaikov commented 11 months ago

Scylla-tools-java uses netty version 4.1.58.Final. Those dependencies are flagged by security scanners and should be updated.

image

yaronkaikov commented 10 months ago

@scylladb/Scylla-maint Please backport this to 2022.2 and 2022.1

denesb commented 10 months ago

2022.2 backport PR: https://github.com/scylladb/scylla-enterprise/pull/3768 Doesn't apply to 2022.1, I will need a backport PR. The backport PR should also include https://github.com/scylladb/scylla-tools-java/issues/364 and optionally https://github.com/scylladb/scylla-tools-java/issues/352.

yaronkaikov commented 10 months ago

2022.2 backport PR: scylladb/scylla-enterprise#3768 Doesn't apply to 2022.1, I will need a backport PR. The backport PR should also include #364 and optionally #352.

https://github.com/scylladb/scylla-enterprise-tools-java/pull/39