streamnative / bookkeeper-achieved

Apache Bookkeeper
https://bookkeeper.apache.org
Apache License 2.0
3 stars 2 forks source link

ISSUE-2512: There is a vulnerability inApache Thrift 0.12.0,upgrade recommended #285

Closed sijie closed 3 years ago

sijie commented 3 years ago

Original Issue: apache/bookkeeper#2512


https://github.com/apache/bookkeeper/blob/00622bce6279ecf40fe044abe5bd7a29722b2535/pom.xml#L149

CVE-2019-0205 CVE-2019-0210

Recommended upgrade version: 0.13.0-hotfix.1