Thank you so much for the Jiras you did for me.

I think this branch is very good for future vulnerabilities.

Best Regards,
Guylaine

Le 11/10/2024 à 14:40, Piergiorgio Lucidi a écrit :
Hi Guylaine,

thank you so much for creating the related ticket in JIRA:
https://issues.apache.org/jira/browse/CONNECTORS-1765

I have just created a dedicated branch in order to let the MCF community to test it:
https://github.com/apache/manifoldcf/tree/CONNECTORS-1765

Maybe we could use this specific branch to fix other vulnerabilities.
Any ideas?

Cheers,
PG

Il giorno lun 7 ott 2024 alle ore 16:17 Guylaine BASSETTE <guylaine.basse...@francelabs.com> ha scritto:

    Hello MCF community,

    We run a scan with Trivy (https://trivy.dev/) into MCF and we saw
    that it contained some vulnerabilities. We did some patches to fix
    critical ones. I created the pull requests here :
    https://github.com/apache/manifoldcf/pull/167

    The build is fine with these fixes but I am not sure that all the
    connectors will work as expected. We already tested the web
    connector, the Windows Share connector that still seem functional.

    It seems that the HSQL update broke the tests-HSQLDB-framework,
    but even without the fix, I'm getting errors on the
    connectors-IT-HSQLDB... Are there other members of the community
    who could work on checking and updating the tests that are useful
    to them?

    And maybe some connectors should be removed if they are no longer
    used, as they increase the risk of vulnerability if they are no
    longer maintained...

-- Best regards,
    Guylaine

    France Labs – Your knowledge, now
    Datafari Enterprise Search – Découvrez la version 6 / Discover our
    version 6
    www.datafari.com <http://www.datafari.com>

    Retrouvez-nous au salon Big Data & IA
    <https://www.bigdataparis.com/fr> les 15 et 16 octobre à Paris,
    stand F18

    
<https://www.bigdataparis.com/fr/pass-salon?utm_campaign=bdaip24&utm_medium=emailspex&utm_source=FRANCE%20LABS>

    *Vous souhaitez accéder à l'ensemble des conférences ?***

    *Grâce à FRANCE LABS, vous bénéficiez d'un code promotionnel
    exclusif de -20% *

    *👇***

    *BDAIP24-FRANCE LABS*



--
Piergiorgio

Reply via email to