You are viewing a plain text version of this content. The canonical link for it is here.
Posted to issues@nifi.apache.org by "David Handermann (Jira)" <ji...@apache.org> on 2022/10/18 15:12:00 UTC
[jira] [Created] (NIFI-10662) Upgrade Jackson to 2.13.4.20221013
David Handermann created NIFI-10662:
---------------------------------------
Summary: Upgrade Jackson to 2.13.4.20221013
Key: NIFI-10662
URL: https://issues.apache.org/jira/browse/NIFI-10662
Project: Apache NiFi
Issue Type: Improvement
Components: Core Framework, Extensions, NiFi Registry
Reporter: David Handermann
Assignee: David Handermann
The Jackson Bill of Materials dependency 2.13.4.20221013 upgrades Jackson dependencies to 2.13.4.2, which resolves [CVE-2022-42003|https://nvd.nist.gov/vuln/detail/CVE-2022-42003] present in 2.13.4. This micro-version upgrade appears to be the best path forward while the 2.14 version is still in release candidate status.
--
This message was sent by Atlassian Jira
(v8.20.10#820010)