[
https://issues.apache.org/jira/browse/HBASE-30262?page=com.atlassian.jira.plugin.system.issuetabpanels:all-tabpanel
]
Xavier Fernandis updated HBASE-30262:
-------------------------------------
Description:
*versions* : opentelemetry 1.49.0 , opentelemetry-javaagent : 2.26.1
*CVE's reported*
- CVE-2026-54513
- CVE-2026-54512
- CVE-2026-54514
- CVE-2026-54515
- CVE-2026-54516
- CVE-2026-54517
- CVE-2026-54518
- sonatype-2025-000535 / CVE-2025-53864
- sonatype-2026-003706
was:
* CVE's reported*
- CVE-2026-54513
- CVE-2026-54512
- CVE-2026-54514
- CVE-2026-54515
- CVE-2026-54516
- CVE-2026-54517
- CVE-2026-54518
- sonatype-2025-000535 / CVE-2025-53864
- sonatype-2026-003706
> Upgrade OpenTelemetry dependencies to address multiple CVEs
> -----------------------------------------------------------
>
> Key: HBASE-30262
> URL: https://issues.apache.org/jira/browse/HBASE-30262
> Project: HBase
> Issue Type: Task
> Reporter: Xavier Fernandis
> Assignee: Xavier Fernandis
> Priority: Major
>
> *versions* : opentelemetry 1.49.0 , opentelemetry-javaagent : 2.26.1
> *CVE's reported*
> - CVE-2026-54513
> - CVE-2026-54512
> - CVE-2026-54514
> - CVE-2026-54515
> - CVE-2026-54516
> - CVE-2026-54517
> - CVE-2026-54518
> - sonatype-2025-000535 / CVE-2025-53864
> - sonatype-2026-003706
--
This message was sent by Atlassian Jira
(v8.20.10#820010)