wzTestAI opened a new issue, #7127:
URL: https://github.com/apache/rocketmq/issues/7127

   ### Before Creating the Bug Report
   
   - [X] I found a bug, not just asking a question, which should be created in 
[GitHub Discussions](https://github.com/apache/rocketmq/discussions).
   
   - [X] I have searched the [GitHub 
Issues](https://github.com/apache/rocketmq/issues) and [GitHub 
Discussions](https://github.com/apache/rocketmq/discussions)  of this 
repository and believe that this is not a duplicate.
   
   - [X] I have confirmed that this bug belongs to the current repository, not 
other repositories of RocketMQ.
   
   
   ### Runtime platform environment
   
   NA
   
   ### RocketMQ version
   
   4.9.6 & 4.9.7
   
   ### JDK Version
   
   _No response_
   
   ### Describe the Bug
   
   <html xmlns:v="urn:schemas-microsoft-com:vml"
   xmlns:o="urn:schemas-microsoft-com:office:office"
   xmlns:x="urn:schemas-microsoft-com:office:excel"
   xmlns="http://www.w3.org/TR/REC-html40";>
   
   <head>
   
   <meta name=ProgId content=Excel.Sheet>
   <meta name=Generator content="Microsoft Excel 15">
   <link id=Main-File rel=Main-File
   href="file:///C:\Users\W00517~1\AppData\Local\Temp\msohtmlclip1\01\clip.htm">
   <link rel=File-List
   
href="file:///C:\Users\W00517~1\AppData\Local\Temp\msohtmlclip1\01\clip_filelist.xml">
   <style>
   <!--table
        {mso-displayed-decimal-separator:"\.";
        mso-displayed-thousand-separator:"\,";}
   @page
        {margin:.75in .7in .75in .7in;
        mso-header-margin:.3in;
        mso-footer-margin:.3in;}
   .font5
        {color:windowtext;
        font-size:9.0pt;
        font-weight:400;
        font-style:normal;
        text-decoration:none;
        font-family:宋体;
        mso-generic-font-family:auto;
        mso-font-charset:134;}
   tr
        {mso-height-source:auto;
        mso-ruby-visibility:none;}
   col
        {mso-width-source:auto;
        mso-ruby-visibility:none;}
   br
        {mso-data-placement:same-cell;}
   td
        {padding-top:1px;
        padding-right:1px;
        padding-left:1px;
        mso-ignore:padding;
        color:black;
        font-size:11.0pt;
        font-weight:400;
        font-style:normal;
        text-decoration:none;
        font-family:宋体;
        mso-generic-font-family:auto;
        mso-font-charset:134;
        mso-number-format:General;
        text-align:general;
        vertical-align:middle;
        border:none;
        mso-background-source:auto;
        mso-pattern:auto;
        mso-protection:locked visible;
        white-space:nowrap;
        mso-rotate:0;}
   .xl64
        {font-family:微软雅黑, sans-serif;
        mso-font-charset:134;
        border:.5pt solid windowtext;}
   .xl65
        {font-family:微软雅黑, sans-serif;
        mso-font-charset:134;
        border:.5pt solid windowtext;
        white-space:normal;}
   ruby
        {ruby-align:left;}
   rt
        {color:windowtext;
        font-size:9.0pt;
        font-weight:400;
        font-style:normal;
        text-decoration:none;
        font-family:宋体;
        mso-generic-font-family:auto;
        mso-font-charset:134;
        mso-char-type:none;
        display:none;}
   -->
   </style>
   </head>
   
   <body link="#0563C1" vlink="#954F72">
   
   
   
   组件 | 漏洞编码
   -- | --
   apache   tomcat-8.5.46 | CVE-2013-4286     CVE-2016-9775     CVE-2019-12418  
   CVE-2019-17563     CVE-2019-2684     CVE-2020-11996     CVE-2020-13934     
CVE-2020-13935     CVE-2020-13943     CVE-2020-17527     CVE-2020-1935     
CVE-2020-1938     CVE-2020-9484     CVE-2021-24122     CVE-2021-25122     
CVE-2021-25329     CVE-2021-30639     CVE-2021-30640     CVE-2021-33037     
CVE-2021-41079     CVE-2021-42340     CVE-2021-43980     CVE-2022-23181     
CVE-2022-25762     CVE-2022-29885     CVE-2022-34305     CVE-2022-42252     
CVE-2022-45143     CVE-2023-24998     CVE-2023-28708
   netty-4.1.65.final | CVE-2021-37136     CVE-2021-37137     CVE-2021-43797    
 CVE-2022-24823     CVE-2022-41881     CVE-2022-41915     CVE-2023-34462
   guava-31.0.1 | CVE-2023-2976
   okio-2.8.0 | CVE-2023-3635
   the legion of   the bouncy castle-1.69 | CVE-2023-33201
   
   
   
   </body>
   
   </html>
   
   
   ### Steps to Reproduce
   
   1、Can related components be upgraded to the latest version?
   2、Does rocketMQ(4.X) have an upgrade plan to address related vulnerabilities?
   
   ### What Did You Expect to See?
   
   1、Can related components be upgraded to the latest version?
   2、Does rocketMQ(4.X) have an upgrade plan to address related vulnerabilities?
   
   ### What Did You See Instead?
   
   Resolve vulnerabilities
   
   ### Additional Context
   
   _No response_


-- 
This is an automated message from the Apache Git Service.
To respond to the message, please log on to GitHub and use the
URL above to go to the specific comment.

To unsubscribe, e-mail: [email protected]

For queries about this service, please contact Infrastructure at:
[email protected]

Reply via email to