[ 
https://issues.apache.org/jira/browse/GOBBLIN-2197?focusedWorklogId=960426&page=com.atlassian.jira.plugin.system.issuetabpanels:worklog-tabpanel#worklog-960426
 ]

ASF GitHub Bot logged work on GOBBLIN-2197:
-------------------------------------------

                Author: ASF GitHub Bot
            Created on: 06/Mar/25 06:41
            Start Date: 06/Mar/25 06:41
    Worklog Time Spent: 10m 
      Work Description: Blazer-007 opened a new pull request, #4104:
URL: https://github.com/apache/gobblin/pull/4104

   Dear Gobblin maintainers,
   
   Please accept this PR. I understand that it will not be reviewed until I 
have checked off all the steps below!
   
   
   ### JIRA
   - [ ] My PR addresses the following [Gobblin 
JIRA](https://issues.apache.org/jira/browse/GOBBLIN/) issues and references 
them in the PR title. For example, "[GOBBLIN-XXX] My Gobblin PR"
       - https://issues.apache.org/jira/browse/GOBBLIN-2197
   
   
   ### Description
   - [ ] Here are some details about my PR, including screenshots (if 
applicable):
   Replace use of org.codehaus.jackson with org.fasterxml.jackson
   
   ### Tests
   - [ ] My PR adds the following unit tests __OR__ does not need testing for 
this extremely good reason:
   
   
   ### Commits
   - [ ] My commits all reference JIRA issues in their subject lines, and I 
have squashed multiple commits if they address the same issue. In addition, my 
commits follow the guidelines from "[How to write a good git commit 
message](http://chris.beams.io/posts/git-commit/)":
       1. Subject is separated from body by a blank line
       2. Subject is limited to 50 characters
       3. Subject does not end with a period
       4. Subject uses the imperative mood ("add", not "adding")
       5. Body wraps at 72 characters
       6. Body explains "what" and "why", not "how"
   
   




Issue Time Tracking
-------------------

            Worklog Id:     (was: 960426)
    Remaining Estimate: 0h
            Time Spent: 10m

> [SECURITY] please replace use of org.codehaus.jackson
> -----------------------------------------------------
>
>                 Key: GOBBLIN-2197
>                 URL: https://issues.apache.org/jira/browse/GOBBLIN-2197
>             Project: Apache Gobblin
>          Issue Type: Task
>            Reporter: PJ Fanning
>            Priority: Major
>          Time Spent: 10m
>  Remaining Estimate: 0h
>
> * org.codehaus.jackson was replaced by com.fasterxml.jackson many years ago.
>  * org.codehaus.jackson is not maintained and has lots of security issues
>  * changing to com.fasterxml.jackson is usually very easy - often just need 
> to fix the imports
>  * 
> https://github.com/search?q=repo%3Aapache%2Fgobblin+codehaus.jackson&type=code



--
This message was sent by Atlassian Jira
(v8.20.10#820010)

Reply via email to