[
https://issues.apache.org/jira/browse/HIVE-27286?focusedWorklogId=858582&page=com.atlassian.jira.plugin.system.issuetabpanels:worklog-tabpanel#worklog-858582
]
ASF GitHub Bot logged work on HIVE-27286:
-----------------------------------------
Author: ASF GitHub Bot
Created on: 22/Apr/23 14:16
Start Date: 22/Apr/23 14:16
Worklog Time Spent: 10m
Work Description: akshat0395 commented on PR #4259:
URL: https://github.com/apache/hive/pull/4259#issuecomment-1518670043
@shreeyasand jettison version 1.3.4 is a transitive dependency in tez-api as
well, please exclude
Dependency tree:
| +- org.apache.tez:tez-api:jar:0.10.2:compile
| | +- commons-lang:commons-lang:jar:2.6:compile
| | +- org.codehaus.jettison:jettison:jar:1.3.4:compile
Issue Time Tracking
-------------------
Worklog Id: (was: 858582)
Time Spent: 0.5h (was: 20m)
> Upgrade jettison version to 1.5.4 to address CVE-2023-1436
> ----------------------------------------------------------
>
> Key: HIVE-27286
> URL: https://issues.apache.org/jira/browse/HIVE-27286
> Project: Hive
> Issue Type: Improvement
> Reporter: Sand Shreeya
> Assignee: Sand Shreeya
> Priority: Major
> Labels: pull-request-available
> Time Spent: 0.5h
> Remaining Estimate: 0h
>
--
This message was sent by Atlassian Jira
(v8.20.10#820010)