You are viewing a plain text version of this content. The canonical link for it is here.
Posted to dev@zeppelin.apache.org by "Jeff Yang (Jira)" <ji...@apache.org> on 2020/09/04 08:18:00 UTC
[jira] [Created] (ZEPPELIN-5028) Upgrade shiro to latest version
(1.6.0) to fix existing CVEs
Jeff Yang created ZEPPELIN-5028:
-----------------------------------
Summary: Upgrade shiro to latest version (1.6.0) to fix existing CVEs
Key: ZEPPELIN-5028
URL: https://issues.apache.org/jira/browse/ZEPPELIN-5028
Project: Zeppelin
Issue Type: Improvement
Components: security
Affects Versions: 0.9.0
Reporter: Jeff Yang
Fix For: 0.9.0
Hi,
We have found lots of Shiro CVE's in zeppelin.Please refer to the url as follow:
https://shiro.apache.org/security-reports.html
--
This message was sent by Atlassian Jira
(v8.3.4#803005)