snowflakedb / snowflake-ingest-java

Java SDK for the Snowflake Ingest Service -
http://www.snowflake.net
Apache License 2.0
69 stars 54 forks source link

Snyk: snowflake-ingest-java io.airlift:aircompressor 0.21 | Snyk ID - SNYK-JAVA-IOAIRLIFT-7164637 #765

Closed github-actions[bot] closed 3 months ago

github-actions[bot] commented 4 months ago

Title: Snyk: snowflake-ingest-java io.airlift:aircompressor 0.21 Additional information on Snyk can be found here: https://snyk.io/org/snowflakedb-sca-scanning-public-repo/project/decdb8fe-6a6d-465d-9e89-84aa34efb781 Repo: snowflake-ingest-java CVE: CVE-2024-36114 Package Type: java Package Name: io.airlift:aircompressor Package Version: 0.21 Snyk ID: SNYK-JAVA-IOAIRLIFT-7164637 Vulnerability URL: http://security.snyk.io/vuln/SNYK-JAVA-IOAIRLIFT-7164637 Severity: high Introduced Date: 2024-05-31 Projects with Vulnerability: snowflakedb/snowflake-ingest-java:pom.xml Target File: pom.xml JIRA Ticket: https://snowflakecomputing.atlassian.net/browse/SNOW-1457523

sfc-gh-tzhang commented 3 months ago

Should be addressed by https://github.com/snowflakedb/snowflake-ingest-java/pull/774