According to sourceclear:

https://www.sourceclear.com/vulnerability-database/security/denial-of-service-dos-/java/sid-7319

commons-compress is vulnerable to denial of service (DoS) attacks.

Although it looks like `hadoop-gremlin` does not use the library directly, but 
still may be worth upgrading.

Run `docker/build.sh -t -i` on my local, and the Reactor Summary reports `BUILD 
SUCCESS`.


[ Full content available at: https://github.com/apache/tinkerpop/pull/1196 ]
This message was relayed via gitbox.apache.org for [email protected]

Reply via email to