You are viewing a plain text version of this content. The canonical link for it is here.
Posted to issues@ignite.apache.org by "Ilya Kasnacheev (Jira)" <ji...@apache.org> on 2020/04/22 08:49:00 UTC
[jira] [Updated] (IGNITE-9340) Update Jetty version in Apache
Ignite (ignite-rest-http)
[ https://issues.apache.org/jira/browse/IGNITE-9340?page=com.atlassian.jira.plugin.system.issuetabpanels:all-tabpanel ]
Ilya Kasnacheev updated IGNITE-9340:
------------------------------------
Security: (was: Private)
> Update Jetty version in Apache Ignite (ignite-rest-http)
> --------------------------------------------------------
>
> Key: IGNITE-9340
> URL: https://issues.apache.org/jira/browse/IGNITE-9340
> Project: Ignite
> Issue Type: Task
> Components: rest
> Affects Versions: 2.6
> Reporter: Dmitry Pavlov
> Assignee: Dmitry Pavlov
> Priority: Major
> Labels: important
> Fix For: 2.7
>
>
> log4j-core-2.8.1.jar 1 Vulnerability, 1 High: CVE-2017-5645 - update done in IGNITE-9035
> jetty-util-9.2.11.v20150529.jar 2 Vulnerabilities, 2 High: CVE-2016-4800, CVE-2017-9735
> jetty-util-9.2.11.v20150529.jar 2 Vulnerabilities, 2 High: CVE-2016-4800, CVE-2017-9735
> jetty-server-9.2.11.v20150529.jar 2 Vulnerabilities, 1 High: CVE-2016-4800, 1 Medium: CVE-2017-7658
--
This message was sent by Atlassian Jira
(v8.3.4#803005)