Airflow Providers released on Sat Mar 26 2022 are ready

2022-03-28 Thread Jarek Potiuk
I'm happy to announce that new versions of Airflow Providers packages were just released. Those are mostly released to rectify the problem with accidentally adding gitpython and wheel as dependency for all providers (but there are also a few bugfixes - notably cncf.kubernetes and elasticsearch

[ANNOUNCE] Apache Camel 3.16.0 Released

2022-03-28 Thread Gregor Zurowski
The Camel PMC is pleased to announce the release of Apache Camel 3.16.0. Apache Camel is an open source integration framework that empowers you to quickly and easily integrate various systems consuming or producing data. This release is a new minor release and contains 206 bug fixes and

[ANNOUNCE] Apache Calcite Avatica Go 5.1.0 released

2022-03-28 Thread Francis Chuang
The Apache Calcite team is pleased to announce the release of Apache Calcite Avatica Go 5.1.0. Avatica is a framework for building database drivers. Avatica defines a wire API and serialization mechanism for clients to communicate with a server as a proxy to a database. The reference Avatica

CVE-2022-25757: Apache APISIX: the body_schema check in request-validation plugin can be bypassed

2022-03-28 Thread Zexuan Luo
Severity: low Description: When decoding JSON with duplicate keys, lua-cjson will choose the last occurred value as the result. By passing a JSON with a duplicate key, the attacker can bypass the body_schema validation in the request-validation plugin. For example,