Re: Medium vulnerability CVE-2024-6763 found in org.eclipse.jetty:jetty-http 10.0.22

2025-02-25 Thread Arnout Engelen
On Mon, Feb 24, 2025 at 6:40 PM Jason Gerlowski wrote: > Published CVEs are public information, so as a project we try to discuss > them on our "public" mailing lists only. So, no need to loop in ' > secur...@solr.apache.org' in the future - that list is reserved for > potential "new" vulnerabil

Re: Medium vulnerability CVE-2024-6763 found in org.eclipse.jetty:jetty-http 10.0.22

2025-02-24 Thread Jason Gerlowski
Hi all, Published CVEs are public information, so as a project we try to discuss them on our "public" mailing lists only. So, no need to loop in ' secur...@solr.apache.org' in the future - that list is reserved for potential "new" vulnerabilities. See our Security Policy for more details. [1] T

Re: Medium vulnerability CVE-2024-6763 found in org.eclipse.jetty:jetty-http 10.0.22

2025-02-18 Thread Altamirano, Emmanuel
Hi community. By the chance do you have any update regarding this reported CVE-2024-6763? Best, Emmanuel Altamirano (E-man-u-wellaa l t aa – m ih r AA n oh) Sr Consultant, Applications Development emmanuel.altamir...@transunion.com P: 312-985-3