Siddharth R created FLINK-36469: ----------------------------------- Summary: Bump commons-io from 2.11.0 to 2.17.0 Key: FLINK-36469 URL: https://issues.apache.org/jira/browse/FLINK-36469 Project: Flink Issue Type: Improvement Components: Kubernetes Operator Affects Versions: kubernetes-operator-1.10.0 Reporter: Siddharth R
Commons-io version 2.11.0 has a direct vulnerability and bumping it to the newer version (2.17.0) will remediate this finding. *Direct vulnerabilities:* [CVE-2024-47554|https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2024-47554] Package details: [https://mvnrepository.com/artifact/commons-io/commons-io/2.17.0] -- This message was sent by Atlassian Jira (v8.20.10#820010)