Radeity commented on PR #13891:
URL: 
https://github.com/apache/dolphinscheduler/pull/13891#issuecomment-1502757310

   > It's OK but if possible we should not do that, consider upgrading to a 
version that has all known CVEs fixed
   
   I've carefully checked that, CVE comes from sub-dependency 
`jackson-databind-2.13.4` which has been imported in  DS before, there's 
nothing wrong with `kubernetes-client-6.0.0`.


-- 
This is an automated message from the Apache Git Service.
To respond to the message, please log on to GitHub and use the
URL above to go to the specific comment.

To unsubscribe, e-mail: [email protected]

For queries about this service, please contact Infrastructure at:
[email protected]

Reply via email to