Arnout Engelen created RANGER-4304:
--------------------------------------

             Summary: Update swagger version in the website
                 Key: RANGER-4304
                 URL: https://issues.apache.org/jira/browse/RANGER-4304
             Project: Ranger
          Issue Type: Improvement
          Components: documentation
            Reporter: Arnout Engelen


The Ranger website embeds a Swagger UI, AFAICS currently version 2.2.10. Older 
versions of swagger, such as this one, suffer from a number of security 
weaknesses.
 
While fortunately [https://ranger.apache.org|https://ranger.apache.org/] does 
not have any sensitive cookies or login mechanism or similar, so there isn't 
really anything to compromise, it would be good to update to a recent version 
of Swagger. Could you look into that?
 
It is somewhat unclear to me whether the ranger site is maintained in SVN 
([https://svn.apache.org/viewvc/ranger/site/)] or git 
([https://github.com/apache/ranger-site])



--
This message was sent by Atlassian Jira
(v8.20.10#820010)

Reply via email to