yahoo / maha

A framework for rapid reporting API development; with out of the box support for high cardinality dimension lookups with druid.
Apache License 2.0
129 stars 57 forks source link

Patching vulnerability from security probe for remote code execution. #1048

Closed michael-mclawhorn closed 1 year ago

michael-mclawhorn commented 1 year ago

I confirm that this contribution is made under the terms of the license found in the root directory of this repository's source tree and that I have the authority necessary to make this contribution on behalf of its copyright owner.

There was a security penetration test this past weekend which would have been stopped with this change.