Skip to content

Conversation

@kokosing
Copy link
Contributor

Exclude all io.netty from hive-agent tests

Even if that dependency was in test scope, its transitive dependencies
were marked in compile scope. It used 4.1.77 version for io.netty which
is flagged for CVEs.

Even if that dependency was in test scope, its transitive dependencies
were marked in compile scope. It used 4.1.77 version for io.netty which
is flagged for CVEs.
@kokosing
Copy link
Contributor Author

FYI @mneethiraj @ksobolew

@kokosing
Copy link
Contributor Author

@mneethiraj Any chance to land this before release-ing Ranger 2.5.0?

@mneethiraj
Copy link
Contributor

@kokosing - this update will likely not be to be included in Ranger 2.5.0 release; release-candidate #3 is already out for voting. I suggest getting this merged in master branch for 3.0.0 release; if a maintenance release is necessary, 2.5.1 release can be considered.

@mneethiraj
Copy link
Contributor

Patch merged via RANGER-4884.

@mneethiraj mneethiraj closed this Aug 1, 2024
@kokosing
Copy link
Contributor Author

kokosing commented Aug 1, 2024

Thank you!

@kokosing kokosing deleted the origin/master/015_netty branch August 1, 2024 09:08
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

3 participants