[GitHub] [commons-exec] JLLeitschuh commented on pull request #75: [SECURITY] Fix Temporary File Information Disclosure Vulnerability

2022-11-19 Thread GitBox
JLLeitschuh commented on PR #75: URL: https://github.com/apache/commons-exec/pull/75#issuecomment-1321050064 I'm going to attempt to rewrite the recipe a bit so that it only creates a PR if it fixes a problem both in non-test code. When production code is fixed, test code will also be

[GitHub] [commons-bsf] garydgregory closed pull request #65: [SECURITY] Fix Temporary File Information Disclosure Vulnerability

2022-11-19 Thread GitBox
garydgregory closed pull request #65: [SECURITY] Fix Temporary File Information Disclosure Vulnerability URL: https://github.com/apache/commons-bsf/pull/65 -- This is an automated message from the Apache Git Service. To respond to the message, please log on to GitHub and use the URL above

[GitHub] [commons-bsf] garydgregory commented on pull request #65: [SECURITY] Fix Temporary File Information Disclosure Vulnerability

2022-11-19 Thread GitBox
garydgregory commented on PR #65: URL: https://github.com/apache/commons-bsf/pull/65#issuecomment-1320985513 Not a security issue. -- This is an automated message from the Apache Git Service. To respond to the message, please log on to GitHub and use the URL above to go to the specific

[GitHub] [commons-exec] garydgregory closed pull request #75: [SECURITY] Fix Temporary File Information Disclosure Vulnerability

2022-11-19 Thread GitBox
garydgregory closed pull request #75: [SECURITY] Fix Temporary File Information Disclosure Vulnerability URL: https://github.com/apache/commons-exec/pull/75 -- This is an automated message from the Apache Git Service. To respond to the message, please log on to GitHub and use the URL above

[GitHub] [commons-exec] garydgregory commented on pull request #75: [SECURITY] Fix Temporary File Information Disclosure Vulnerability

2022-11-19 Thread GitBox
garydgregory commented on PR #75: URL: https://github.com/apache/commons-exec/pull/75#issuecomment-1320978832 Please STOP attempting to create FUD with "Security" PRs in test code. -- This is an automated message from the Apache Git Service. To respond to the message, please log on to

[GitHub] [commons-csv] garydgregory closed pull request #286: Use NIO APIs

2022-11-19 Thread GitBox
garydgregory closed pull request #286: Use NIO APIs URL: https://github.com/apache/commons-csv/pull/286 -- This is an automated message from the Apache Git Service. To respond to the message, please log on to GitHub and use the URL above to go to the specific comment. To unsubscribe, e-mail:

[GitHub] [commons-csv] garydgregory commented on pull request #286: Use NIO APIs

2022-11-19 Thread GitBox
garydgregory commented on PR #286: URL: https://github.com/apache/commons-csv/pull/286#issuecomment-1320978605 Please STOP creating "Security" PRs in test code. -- This is an automated message from the Apache Git Service. To respond to the message, please log on to GitHub and use the URL

[GitHub] [commons-bsf] JLLeitschuh opened a new pull request, #65: [SECURITY] Fix Temporary File Information Disclosure Vulnerability

2022-11-19 Thread GitBox
JLLeitschuh opened a new pull request, #65: URL: https://github.com/apache/commons-bsf/pull/65 # Security Vulnerability Fix This pull request fixes a Temporary File Information Disclosure Vulnerability, which existed in this project. ## Preamble The system temporary

[GitHub] [commons-exec] JLLeitschuh opened a new pull request, #75: [SECURITY] Fix Temporary File Information Disclosure Vulnerability

2022-11-19 Thread GitBox
JLLeitschuh opened a new pull request, #75: URL: https://github.com/apache/commons-exec/pull/75 # Security Vulnerability Fix This pull request fixes a Temporary File Information Disclosure Vulnerability, which existed in this project. ## Preamble The system

[GitHub] [commons-csv] JLLeitschuh opened a new pull request, #286: [SECURITY] Fix Temporary File Information Disclosure Vulnerability

2022-11-19 Thread GitBox
JLLeitschuh opened a new pull request, #286: URL: https://github.com/apache/commons-csv/pull/286 # Security Vulnerability Fix This pull request fixes a Temporary File Information Disclosure Vulnerability, which existed in this project. ## Preamble The system

[jira] [Commented] (JEXL-385) Support disabling fortran-style relational operators syntax

2022-11-19 Thread Dmitri Blinov (Jira)
[ https://issues.apache.org/jira/browse/JEXL-385?page=com.atlassian.jira.plugin.system.issuetabpanels:comment-tabpanel=17636192#comment-17636192 ] Dmitri Blinov commented on JEXL-385: Thank you! Maybe it should be mentioned in docsĀ  > Support

[GitHub] [commons-codec] kinow commented on pull request #159: [SECURITY] Fix Temporary File Information Disclosure Vulnerability

2022-11-19 Thread GitBox
kinow commented on PR #159: URL: https://github.com/apache/commons-codec/pull/159#issuecomment-1320918801 @garydgregory +1 I said the same thing before to @JLLeitschuh in another PR (can't recall if Lang or Imaging). The response was the same as in the PR description. That they

[GitHub] [commons-jexl] henrib merged pull request #142: Bump japicmp-maven-plugin from 0.16.0 to 0.17.1

2022-11-19 Thread GitBox
henrib merged PR #142: URL: https://github.com/apache/commons-jexl/pull/142 -- This is an automated message from the Apache Git Service. To respond to the message, please log on to GitHub and use the URL above to go to the specific comment. To unsubscribe, e-mail:

[GitHub] [commons-jexl] henrib closed pull request #139: Support disabling fortran-style relational operators syntax

2022-11-19 Thread GitBox
henrib closed pull request #139: Support disabling fortran-style relational operators syntax URL: https://github.com/apache/commons-jexl/pull/139 -- This is an automated message from the Apache Git Service. To respond to the message, please log on to GitHub and use the URL above to go to the

[GitHub] [commons-jexl] henrib commented on pull request #139: Support disabling fortran-style relational operators syntax

2022-11-19 Thread GitBox
henrib commented on PR #139: URL: https://github.com/apache/commons-jexl/pull/139#issuecomment-1320915999 Integrated changes, renamed feature (comparatorNames). -- This is an automated message from the Apache Git Service. To respond to the message, please log on to GitHub and use the URL

[jira] [Resolved] (JEXL-385) Support disabling fortran-style relational operators syntax

2022-11-19 Thread Henri Biestro (Jira)
[ https://issues.apache.org/jira/browse/JEXL-385?page=com.atlassian.jira.plugin.system.issuetabpanels:all-tabpanel ] Henri Biestro resolved JEXL-385. Resolution: Fixed Commit

[GitHub] [commons-codec] garydgregory commented on pull request #159: [SECURITY] Fix Temporary File Information Disclosure Vulnerability

2022-11-19 Thread GitBox
garydgregory commented on PR #159: URL: https://github.com/apache/commons-codec/pull/159#issuecomment-1320915190 Don't scan our tests please and then report security issues. If you want to participate in our security process, read our security page https://commons.apache.org/security.html

[GitHub] [commons-codec] JLLeitschuh commented on pull request #159: [SECURITY] Fix Temporary File Information Disclosure Vulnerability

2022-11-19 Thread GitBox
JLLeitschuh commented on PR #159: URL: https://github.com/apache/commons-codec/pull/159#issuecomment-1320908577 I agree that fixing tests is of dubious value... However I can't guarantee that any given project isn't doing something sensitive inside their unit tests. -- This is an

[GitHub] [commons-beanutils] garydgregory merged pull request #146: Bump japicmp-maven-plugin from 0.16.0 to 0.17.1

2022-11-19 Thread GitBox
garydgregory merged PR #146: URL: https://github.com/apache/commons-beanutils/pull/146 -- This is an automated message from the Apache Git Service. To respond to the message, please log on to GitHub and use the URL above to go to the specific comment. To unsubscribe, e-mail:

[GitHub] [commons-imaging] kinow commented on pull request #249: Use NIO API

2022-11-19 Thread GitBox
kinow commented on PR #249: URL: https://github.com/apache/commons-imaging/pull/249#issuecomment-1320880907 Thank you @garydgregory ! -- This is an automated message from the Apache Git Service. To respond to the message, please log on to GitHub and use the URL above to go to the specific

[GitHub] [commons-imaging] garydgregory commented on pull request #249: Use NIO API

2022-11-19 Thread GitBox
garydgregory commented on PR #249: URL: https://github.com/apache/commons-imaging/pull/249#issuecomment-1320875318 I changed the title of this PR to avoid the FUD, there is no security issue here. -- This is an automated message from the Apache Git Service. To respond to the message,

[GitHub] [commons-imaging] kinow merged pull request #249: [SECURITY] Fix Temporary File Information Disclosure Vulnerability

2022-11-19 Thread GitBox
kinow merged PR #249: URL: https://github.com/apache/commons-imaging/pull/249 -- This is an automated message from the Apache Git Service. To respond to the message, please log on to GitHub and use the URL above to go to the specific comment. To unsubscribe, e-mail:

[GitHub] [commons-imaging] codecov-commenter commented on pull request #249: [SECURITY] Fix Temporary File Information Disclosure Vulnerability

2022-11-19 Thread GitBox
codecov-commenter commented on PR #249: URL: https://github.com/apache/commons-imaging/pull/249#issuecomment-1320848713 #