Siddharth R created FLINK-38466:
-----------------------------------

             Summary: Bump derby version to 10.17.1.0
                 Key: FLINK-38466
                 URL: https://issues.apache.org/jira/browse/FLINK-38466
             Project: Flink
          Issue Type: Improvement
          Components: Autoscaler, Tests
            Reporter: Siddharth R


The current version 10.15.2.0 has a *direct vulnerability* - [CVE Record: 
CVE-2022-46337|https://www.cve.org/CVERecord?id=CVE-2022-46337].
To remediate this we can upgrade this package to latest 10.17.1.0

Current - [Maven Repository: org.apache.derby » derby » 
10.15.2.0|https://mvnrepository.com/artifact/org.apache.derby/derby/10.15.2.0]

Latest - [Maven Repository: org.apache.derby » derby » 
10.17.1.0|https://mvnrepository.com/artifact/org.apache.derby/derby/10.17.1.0]

 



--
This message was sent by Atlassian Jira
(v8.20.10#820010)

Reply via email to