[
https://issues.apache.org/jira/browse/RANGER-3799?page=com.atlassian.jira.plugin.system.issuetabpanels:all-tabpanel
]
Pradeep Agrawal resolved RANGER-3799.
-------------------------------------
Fix Version/s: 3.0.0
Resolution: Fixed
> Move off jersey 1.0
> -------------------
>
> Key: RANGER-3799
> URL: https://issues.apache.org/jira/browse/RANGER-3799
> Project: Ranger
> Issue Type: Improvement
> Components: admin, intg, kms, plugins, Ranger
> Reporter: Michael Smith
> Assignee: Pradeep Agrawal
> Priority: Major
> Fix For: 3.0.0
>
>
> Jersey 1.19 is ancient, and if you need Atom feed parsing you're stuck with
> rome 0.9 and jdom 1.0 (which are going to flag an XXE CVE on jdom, though
> rome is not technically vulnerable to it because it uses
> {{setExpandEntities(false)}}).
> Move to Jersey 2.x consistent with other uses of Jersey in Ranger.
--
This message was sent by Atlassian Jira
(v8.20.10#820010)