yangqiyu0306 opened a new pull request #6857:
URL: https://github.com/apache/dolphinscheduler/pull/6857


   <!--Thanks very much for contributing to Apache DolphinScheduler. Please 
review 
https://dolphinscheduler.apache.org/en-us/community/development/pull-request.html
 before opening a pull request.-->
   
   
   ## Purpose of the pull request
   
   upgrade cron-utils version 5.0.5 -> 9.1.3
   
   ## Brief change log
   
   the upgrade information is ' 
https://github.com/jmrozanec/cron-utils/security/advisories/GHSA-pfj3-56hm-jwq5 
'
   According to the description of the vulnerability, that only projects using 
the @Cron annotation to validate untrusted Cron expressions are affected.
   
   ## Verify this pull request
   
   Create a simple process and set scheduled tasks. As a result, it can be 
scheduled normally


-- 
This is an automated message from the Apache Git Service.
To respond to the message, please log on to GitHub and use the
URL above to go to the specific comment.

To unsubscribe, e-mail: [email protected]

For queries about this service, please contact Infrastructure at:
[email protected]


Reply via email to