[
https://issues.apache.org/jira/browse/SPARK-52996?page=com.atlassian.jira.plugin.system.issuetabpanels:all-tabpanel
]
Yang Jie resolved SPARK-52996.
------------------------------
Fix Version/s: 4.1.0
Resolution: Fixed
Issue resolved by pull request 51703
[https://github.com/apache/spark/pull/51703]
> Update brace-expansion to 1.1.12
> --------------------------------
>
> Key: SPARK-52996
> URL: https://issues.apache.org/jira/browse/SPARK-52996
> Project: Spark
> Issue Type: Dependency upgrade
> Components: Tests
> Affects Versions: 4.1.0
> Reporter: Cameron
> Assignee: Cameron
> Priority: Major
> Labels: pull-request-available
> Fix For: 4.1.0
>
>
> brace-expansion 1.1.11 contains CVE-2025-5889. Updating to 1.1.12 removes it
--
This message was sent by Atlassian Jira
(v8.20.10#820010)
---------------------------------------------------------------------
To unsubscribe, e-mail: [email protected]
For additional commands, e-mail: [email protected]