[
https://issues.apache.org/jira/browse/DRILL-7713?page=com.atlassian.jira.plugin.system.issuetabpanels:comment-tabpanel&focusedCommentId=17087654#comment-17087654
]
ASF GitHub Bot commented on DRILL-7713:
---------------------------------------
arina-ielchiieva opened a new pull request #2063:
URL: https://github.com/apache/drill/pull/2063
# [DRILL-7713](https://issues.apache.org/jira/browse/DRILL-7713): Upgrade
misc libraries which outdated versions have reported vulnerabilities
## Description
List of libraries:
1. Jackson
2. Retrofit
3. Commons-beanutils
4. Xalan
5. Xerdes
6. Commons-compress
7. Commons-codec
8. Snakeyaml
9. Metadata-extractor
## Documentation
NA
## Testing
Updated tests due to upgrade of metadata-extractor library, ran all tests.
----------------------------------------------------------------
This is an automated message from the Apache Git Service.
To respond to the message, please log on to GitHub and use the
URL above to go to the specific comment.
For queries about this service, please contact Infrastructure at:
[email protected]
> Upgrade misc libraries which outdated versions have reported vulnerabilities
> ----------------------------------------------------------------------------
>
> Key: DRILL-7713
> URL: https://issues.apache.org/jira/browse/DRILL-7713
> Project: Apache Drill
> Issue Type: Task
> Affects Versions: 1.17.0
> Reporter: Arina Ielchiieva
> Assignee: Arina Ielchiieva
> Priority: Major
> Fix For: 1.18.0
>
>
> List of libraries to update:
> |commons-beanutils-1.9.2.jar|
> |jackson-databind-2.9.9.jar|
> |xalan-2.7.1.jar|
> |commons-compress-1.18.jar|
> |metadata-extractor-2.11.0.jar|
> |xercesImpl-2.11.0.jar|
> |retrofit-2.1.0.jar|
> |snakeyaml-1.23.jar|
> |commons-codec-1.10.jar|
--
This message was sent by Atlassian Jira
(v8.3.4#803005)