[
https://issues.apache.org/jira/browse/NIFI-10590?page=com.atlassian.jira.plugin.system.issuetabpanels:comment-tabpanel&focusedCommentId=17613058#comment-17613058
] ASF subversion and git services commented on NIFI-10590: -------------------------------------------------------- Commit 01b2cda35cfa14ca574ac50826aa299a6b6f8a8f in nifi's branch refs/heads/main from mr1716 [ https://gitbox.apache.org/repos/asf?p=nifi.git;h=01b2cda35c ] NIFI-10590 Upgrade Groovy From 2.5.14 To 2.5.18 This closes #6485 Signed-off-by: Mike Thomsen <[email protected]> > Upgrade groovy from 2.5.14 to 2.5.18 > ------------------------------------- > > Key: NIFI-10590 > URL: https://issues.apache.org/jira/browse/NIFI-10590 > Project: Apache NiFi > Issue Type: Improvement > Affects Versions: 1.17.0 > Reporter: Mike R > Priority: Major > > Upgrade groovy from 2.5.14 to 2.5.18 to remediate 17 CVEs: > [CVE-2021-39154|https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2021-39154] > [CVE-2021-39152|https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2021-39152] > [CVE-2021-39150|https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2021-39150] > [CVE-2021-39148|https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2021-39148] > [CVE-2021-39146|https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2021-39146] > [CVE-2021-39144|https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2021-39144] > [CVE-2021-39140|https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2021-39140] > [CVE-2021-36374|https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2021-36374] > [CVE-2021-29505|https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2021-29505] > [CVE-2021-21350|https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2021-21350] > [CVE-2021-21348|https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2021-21348] > [CVE-2021-21346|https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2021-21346] > [CVE-2021-21344|https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2021-21344] > [CVE-2021-21342|https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2021-21342] > [CVE-2020-26259|https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2020-26259] > [CVE-2020-26217|https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2020-26217] > [CVE-2019-10173|https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2019-10173] -- This message was sent by Atlassian Jira (v8.20.10#820010)
