zentol commented on issue #8100: [FLINK-12082] Bump up the jython-standalone version URL: https://github.com/apache/flink/pull/8100#issuecomment-479562002 Not only was this CVE already addressed in `2.7.1`, moving to `2.7.1.b3` would mean _downgrading_ the dependency.
---------------------------------------------------------------- This is an automated message from the Apache Git Service. To respond to the message, please log on to GitHub and use the URL above to go to the specific comment. For queries about this service, please contact Infrastructure at: [email protected] With regards, Apache Git Services
