Siddharth R created FLINK-36469:
-----------------------------------
Summary: Bump commons-io from 2.11.0 to 2.17.0
Key: FLINK-36469
URL: https://issues.apache.org/jira/browse/FLINK-36469
Project: Flink
Issue Type: Improvement
Components: Kubernetes Operator
Affects Versions: kubernetes-operator-1.10.0
Reporter: Siddharth R
Commons-io version 2.11.0 has a direct vulnerability and bumping it to the
newer version (2.17.0) will remediate this finding.
*Direct vulnerabilities:*
[CVE-2024-47554|https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2024-47554]
Package details:
[https://mvnrepository.com/artifact/commons-io/commons-io/2.17.0]
--
This message was sent by Atlassian Jira
(v8.20.10#820010)