Any view on this? On Monday 28 October, 2024 at 04:16:17 pm IST, Chirag Dewan via user <user@flink.apache.org> wrote: Hi, There is a critical CVE on Apache Avro - NVD - CVE-2024-47561
Is there a released Flink version which has upgraded Avro to 1.11.4 or 1.12? If not, is it safe to upgrade just AVRO, keeping flink-avro on 1.16.3 (my current Flink version). Appreciate any inputs. Thanks,Chirag | | | | | | | | | | | NVD - CVE-2024-47561 | | |