[
https://issues.apache.org/jira/browse/CASSANDRA-20924?page=com.atlassian.jira.plugin.system.issuetabpanels:comment-tabpanel&focusedCommentId=18022810#comment-18022810
]
Stefan Miklosovic commented on CASSANDRA-20924:
-----------------------------------------------
We can update to netty 4.1.125 to get rid of CVE-2025-58057, tracking it here
(1). Then everything else can be suppressed as it is used in shaded driver
which is used just in stress tool.
(1) https://issues.apache.org/jira/browse/CASSANDRA-20925
> Update dependency-check library to version 12.1.6
> -------------------------------------------------
>
> Key: CASSANDRA-20924
> URL: https://issues.apache.org/jira/browse/CASSANDRA-20924
> Project: Apache Cassandra
> Issue Type: Task
> Reporter: Stefan Miklosovic
> Assignee: Stefan Miklosovic
> Priority: Normal
>
> The current version (12.1.0) fail on unauthorized exceptions to OSS index
> which 12.1.6 skips.
--
This message was sent by Atlassian Jira
(v8.20.10#820010)
---------------------------------------------------------------------
To unsubscribe, e-mail: [email protected]
For additional commands, e-mail: [email protected]