LakshSingla opened a new pull request, #15524:
URL: https://github.com/apache/druid/pull/15524

   Suppress CVE-2022-46337 and CVEs below the score of 9 for the patch branch 
to ensure that the build process goes smoothly since this is a patch release on 
top of 28.0.0. 
   
   CVE-2022-46337 has a high CVSS score (>9), however, it is suppressed in the 
master branch since it doesn't apply to Druid, but the 
[patch](https://github.com/apache/druid/pull/15447) couldn't be backported 
cleanly


-- 
This is an automated message from the Apache Git Service.
To respond to the message, please log on to GitHub and use the
URL above to go to the specific comment.

To unsubscribe, e-mail: [email protected]

For queries about this service, please contact Infrastructure at:
[email protected]


---------------------------------------------------------------------
To unsubscribe, e-mail: [email protected]
For additional commands, e-mail: [email protected]

Reply via email to