[ 
https://issues.apache.org/jira/browse/YUNIKORN-3172?page=com.atlassian.jira.plugin.system.issuetabpanels:comment-tabpanel&focusedCommentId=18041725#comment-18041725
 ] 

Wilfred Spiegelenburg commented on YUNIKORN-3172:
-------------------------------------------------

We also saw issues being logged by dependabot in the [security 
alerts|https://github.com/apache/yunikorn-web/security/dependabot] of the web 
repo.

Some of them were closed after your upgrade. Some still seem to be open. I have 
filed a second PR to update those and see if we can close them all.

> Web UI: dependency updates for CVEs
> -----------------------------------
>
>                 Key: YUNIKORN-3172
>                 URL: https://issues.apache.org/jira/browse/YUNIKORN-3172
>             Project: Apache YuniKorn
>          Issue Type: Task
>          Components: webapp
>            Reporter: Wilfred Spiegelenburg
>            Assignee: Shubham Mishra
>            Priority: Major
>              Labels: pull-request-available
>
> Fix dependabot tagged security issues in the webapp



--
This message was sent by Atlassian Jira
(v8.20.10#820010)

---------------------------------------------------------------------
To unsubscribe, e-mail: [email protected]
For additional commands, e-mail: [email protected]

Reply via email to