[
https://issues.apache.org/jira/browse/CASSANDRA-20094?page=com.atlassian.jira.plugin.system.issuetabpanels:all-tabpanel
]
Brandon Williams updated CASSANDRA-20094:
-----------------------------------------
Resolution: Duplicate
Status: Resolved (was: Triage Needed)
> snakeyaml1.26 still exists in apache-cassandra-5.0.2
> ----------------------------------------------------
>
> Key: CASSANDRA-20094
> URL: https://issues.apache.org/jira/browse/CASSANDRA-20094
> Project: Cassandra
> Issue Type: Bug
> Reporter: Kapil Shewate
> Priority: Urgent
>
> CVE-2022-1471 BDSA-2022-3447 9.8 Critical
> apache-cassandra-5.0.2/lib/snakeyaml-1.26.jar
>
> CVSS score:-9.8 Critical
--
This message was sent by Atlassian Jira
(v8.20.10#820010)
---------------------------------------------------------------------
To unsubscribe, e-mail: [email protected]
For additional commands, e-mail: [email protected]