[ 
https://issues.apache.org/jira/browse/NIFI-11543?page=com.atlassian.jira.plugin.system.issuetabpanels:comment-tabpanel&focusedCommentId=17722095#comment-17722095
 ] 

Jeyassri Balachandran commented on NIFI-11543:
----------------------------------------------

 <artifactId>nifi-hashicorp-vault</artifactId>
    <properties>
        <spring.vault.version>2.3.3</spring.vault.version>
    </properties>

This is the change that can be done for 1.19.x  

 

> Upgrade Spring Vault version from 2.3.2 to 2.3.3
> ------------------------------------------------
>
>                 Key: NIFI-11543
>                 URL: https://issues.apache.org/jira/browse/NIFI-11543
>             Project: Apache NiFi
>          Issue Type: Improvement
>          Components: Extensions
>    Affects Versions: 1.19.0, 1.19.1
>            Reporter: Jeyassri Balachandran
>            Priority: Minor
>              Labels: dependency-upgrade
>
> In nifi-commons/nifi-hashicorp-vault/pom.xml, under nifi-hashicorp-vault, 
> Spring.vault.version should be upgraded from 2.3.2 to 2.3.3.
> This will help fix Medium security vulnerability CVE-2023-20863. 



--
This message was sent by Atlassian Jira
(v8.20.10#820010)

Reply via email to