[CANCEL] [VOTE] Release Apache HertzBeat (incubating) 1.6.1-rc2

2024-09-20 Thread zhaoqingran
Hello HertzBeat Community: I'm cancelling this vote: [VOTE] Release Apache HertzBeat (incubating) 1.6.1-rc2-Apache Mail Archives Discovered that the front-end was not starting up properly. We will fix and start the new round vo

[Meeting Note] [2024.09.20] Apache HertzBeat(Incubating) Open And Governance Meeting

2024-09-20 Thread Hongyu Liu
Hi Community, here are the meeting minutes of our community meeting. The meeting is for anyone wanting to get involved in the HertzBeat dev, doc, ideas or discuss. Time: 9:00 PM on the third week of each month. Mode: Online Tencent Video Conference Purpose: Building Open And Governance Community

CVE-2024-42323: Apache HertzBeat: RCE by snakeYaml deser load malicious xml

2024-09-20 Thread Chao Gong
Severity: important Affected versions: - Apache HertzBeat before 1.6.0 Description: SnakeYaml Deser Load Malicious xml rce vulnerability in Apache HertzBeat (incubating).  This vulnerability can only be exploited by authorized attackers. This issue affects Apache HertzBeat (incubating): befor