pjfanning opened a new issue #1308:
URL: https://github.com/apache/incubator-linkis/issues/1308


   ### Search before asking
   
   - [X] I searched the 
[issues](https://github.com/apache/incubator-linkis/issues) and found no 
similar issues.
   
   
   ### Linkis Component
   
   linkis-commons
   
   ### What happened + What you expected to happen
   
   
https://github.com/apache/incubator-linkis/blob/master/tool/dependencies/third-party-dependencies.txt#L296
   
   I would suggest you upgrade to POI 5.2.0 (released today). This would also 
mean the POI transitive dependency XMLBeans will get upgraded too (older 
versions of XMLBeans has security vulnerabilities too)
   
   I also maintain https://github.com/pjfanning/excel-streaming-reader which is 
a fork of monitorjbl xlsx-streamer that works with POI 5.x while monitorjbl 
version does not. My version uses a different java package name but otherwise 
works the same.
   
   I can try to put together a pull request if someone on Linkis team is 
willing to review it.
   
   ### Relevent platform
   
   all
   
   ### Reproduction script
   
   n/a
   
   ### Anything else
   
   _No response_
   
   ### Are you willing to submit a PR?
   
   - [X] Yes I am willing to submit a PR!


-- 
This is an automated message from the Apache Git Service.
To respond to the message, please log on to GitHub and use the
URL above to go to the specific comment.

To unsubscribe, e-mail: dev-unsubscr...@linkis.apache.org

For queries about this service, please contact Infrastructure at:
us...@infra.apache.org



---------------------------------------------------------------------
To unsubscribe, e-mail: dev-unsubscr...@linkis.apache.org
For additional commands, e-mail: dev-h...@linkis.apache.org

Reply via email to