[CVE-2021-26919] Apache Druid: Authenticated users can execute arbitrary code from malicious MySQL database systems

2021-03-29 Thread Jihoon Son
Severity: Medium Vendor: The Apache Software Foundation Versions Affected: Druid 0.20.1 and earlier Description: Druid allows users to read data from other database systems using JDBC. This functionality is to allow trusted users with the proper permissions to set up lookups or submit ingestion

[ANNOUNCE] Apache Druid 0.20.2 release

2021-03-29 Thread Jihoon Son
The Apache Druid team is proud to announce the release of Apache Druid 0.20.2. Druid is a high performance analytics data store for event-driven data. Apache Druid 0.20.2 introduces new configurations related to JDBC connection properties. Source and binary distributions can be downloaded from:

[ANNOUNCE] Apache Tika 1.26 released

2021-03-29 Thread Tim Allison
The Apache Tika project is pleased to announce the release of Apache Tika 1.26. The release contents have been pushed out to the main Apache release site and to the Maven Central sync, so the releases should be available as soon as the mirrors get the syncs. Apache Tika is a toolkit for detecting

[ANNOUNCE] Apache Camel 3.9.0 Released

2021-03-29 Thread Gregor Zurowski
The Camel PMC is pleased to announce the release of Apache Camel 3.9.0. Apache Camel is an open source integration framework that empowers you to quickly and easily integrate various systems consuming or producing data. This release is a new minor release and contains 159 bug fixes and