Siddharth R created FLINK-38466:
-----------------------------------
Summary: Bump derby version to 10.17.1.0
Key: FLINK-38466
URL: https://issues.apache.org/jira/browse/FLINK-38466
Project: Flink
Issue Type: Improvement
Components: Autoscaler, Tests
Reporter: Siddharth R
The current version 10.15.2.0 has a *direct vulnerability* - [CVE Record:
CVE-2022-46337|https://www.cve.org/CVERecord?id=CVE-2022-46337].
To remediate this we can upgrade this package to latest 10.17.1.0
Current - [Maven Repository: org.apache.derby » derby »
10.15.2.0|https://mvnrepository.com/artifact/org.apache.derby/derby/10.15.2.0]
Latest - [Maven Repository: org.apache.derby » derby »
10.17.1.0|https://mvnrepository.com/artifact/org.apache.derby/derby/10.17.1.0]
--
This message was sent by Atlassian Jira
(v8.20.10#820010)