Thank you so much for the Jiras you did for me.
I think this branch is very good for future vulnerabilities.
Best Regards,
Guylaine
Le 11/10/2024 à 14:40, Piergiorgio Lucidi a écrit :
Hi Guylaine,
thank you so much for creating the related ticket in JIRA:
https://issues.apache.org/jira/browse/CONNECTORS-1765
I have just created a dedicated branch in order to let the MCF
community to test it:
https://github.com/apache/manifoldcf/tree/CONNECTORS-1765
Maybe we could use this specific branch to fix other vulnerabilities.
Any ideas?
Cheers,
PG
Il giorno lun 7 ott 2024 alle ore 16:17 Guylaine BASSETTE
<guylaine.basse...@francelabs.com> ha scritto:
Hello MCF community,
We run a scan with Trivy (https://trivy.dev/) into MCF and we saw
that it contained some vulnerabilities. We did some patches to fix
critical ones. I created the pull requests here :
https://github.com/apache/manifoldcf/pull/167
The build is fine with these fixes but I am not sure that all the
connectors will work as expected. We already tested the web
connector, the Windows Share connector that still seem functional.
It seems that the HSQL update broke the tests-HSQLDB-framework,
but even without the fix, I'm getting errors on the
connectors-IT-HSQLDB... Are there other members of the community
who could work on checking and updating the tests that are useful
to them?
And maybe some connectors should be removed if they are no longer
used, as they increase the risk of vulnerability if they are no
longer maintained...
--
Best regards,
Guylaine
France Labs – Your knowledge, now
Datafari Enterprise Search – Découvrez la version 6 / Discover our
version 6
www.datafari.com <http://www.datafari.com>
Retrouvez-nous au salon Big Data & IA
<https://www.bigdataparis.com/fr> les 15 et 16 octobre à Paris,
stand F18
<https://www.bigdataparis.com/fr/pass-salon?utm_campaign=bdaip24&utm_medium=emailspex&utm_source=FRANCE%20LABS>
*Vous souhaitez accéder à l'ensemble des conférences ?***
*Grâce à FRANCE LABS, vous bénéficiez d'un code promotionnel
exclusif de -20% *
*👇***
*BDAIP24-FRANCE LABS*
--
Piergiorgio