[
https://issues.apache.org/jira/browse/NIFI-14273?page=com.atlassian.jira.plugin.system.issuetabpanels:comment-tabpanel&focusedCommentId=17927828#comment-17927828
]
ASF subversion and git services commented on NIFI-14273:
--------------------------------------------------------
Commit 6cab1a282b2543ac780663ea924ea3f84942971f in nifi's branch
refs/heads/main from dependabot[bot]
[ https://gitbox.apache.org/repos/asf?p=nifi.git;h=6cab1a282b ]
NIFI-14273 Upgraded elliptic from 6.6.0 to 6.6.1 for Registry (#9722)
Signed-off-by: David Handermann <[email protected]>
> Upgrade elliptic library to 6.6.1 for Registry
> ----------------------------------------------
>
> Key: NIFI-14273
> URL: https://issues.apache.org/jira/browse/NIFI-14273
> Project: Apache NiFi
> Issue Type: Improvement
> Reporter: David Handermann
> Assignee: David Handermann
> Priority: Major
> Time Spent: 10m
> Remaining Estimate: 0h
>
> The [elliptic|https://github.com/indutny/elliptic] library is a transitive
> dependency used for building the NiFi Registry web user interface. The
> library should be upgraded to 6.6.1 to resolve GitHub advisory
> [GHSA-vjh7-7g9h-fjfh|https://github.com/advisories/GHSA-vjh7-7g9h-fjfh]
> related to private key extraction on malformed input.
--
This message was sent by Atlassian Jira
(v8.20.10#820010)