You are viewing a plain text version of this content. The canonical link for it is here.
Posted to commits@doris.apache.org by GitBox <gi...@apache.org> on 2022/04/01 03:22:30 UTC

[GitHub] [incubator-doris] zhengshiJ opened a new pull request #8793: [fix] Fix a high-risk vulnerability in the Spring framework

zhengshiJ opened a new pull request #8793:
URL: https://github.com/apache/incubator-doris/pull/8793


   # Proposed changes
   
   
   ## Problem Summary:
   
   There is a high-severity vulnerability in the Spring Framework. When the application runs in JDK9 and above environments, if an attacker sends a malicious HTTP request to the Spring MVC Web application, malicious commands may be executed on the server.
   
   ## Checklist(Required)
   
   1. Does it affect the original behavior: (No)
   2. Has unit tests been added: (No Need)
   3. Has document been added or modified: (No Need)
   4. Does it need to update dependencies: (No)
   5. Are there any changes that cannot be rolled back: (No)
   
   ## Further comments
   
   If this is a relatively large or complex change, kick off the discussion at [dev@doris.apache.org](mailto:dev@doris.apache.org) by explaining why you chose the solution you did and what alternatives you considered, etc...
   


-- 
This is an automated message from the Apache Git Service.
To respond to the message, please log on to GitHub and use the
URL above to go to the specific comment.

To unsubscribe, e-mail: commits-unsubscribe@doris.apache.org

For queries about this service, please contact Infrastructure at:
users@infra.apache.org



---------------------------------------------------------------------
To unsubscribe, e-mail: commits-unsubscribe@doris.apache.org
For additional commands, e-mail: commits-help@doris.apache.org


[GitHub] [incubator-doris] morningman commented on pull request #8793: [fix] Fix a high-risk vulnerability in the Spring framework

Posted by GitBox <gi...@apache.org>.
morningman commented on pull request #8793:
URL: https://github.com/apache/incubator-doris/pull/8793#issuecomment-1085990456


   Does it releted to #8802 ?


-- 
This is an automated message from the Apache Git Service.
To respond to the message, please log on to GitHub and use the
URL above to go to the specific comment.

To unsubscribe, e-mail: commits-unsubscribe@doris.apache.org

For queries about this service, please contact Infrastructure at:
users@infra.apache.org



---------------------------------------------------------------------
To unsubscribe, e-mail: commits-unsubscribe@doris.apache.org
For additional commands, e-mail: commits-help@doris.apache.org


[GitHub] [incubator-doris] zhengshiJ commented on pull request #8793: [fix] Fix a high-risk vulnerability in the Spring framework

Posted by GitBox <gi...@apache.org>.
zhengshiJ commented on pull request #8793:
URL: https://github.com/apache/incubator-doris/pull/8793#issuecomment-1086499963


   Solved the same problem, closed


-- 
This is an automated message from the Apache Git Service.
To respond to the message, please log on to GitHub and use the
URL above to go to the specific comment.

To unsubscribe, e-mail: commits-unsubscribe@doris.apache.org

For queries about this service, please contact Infrastructure at:
users@infra.apache.org



---------------------------------------------------------------------
To unsubscribe, e-mail: commits-unsubscribe@doris.apache.org
For additional commands, e-mail: commits-help@doris.apache.org


[GitHub] [incubator-doris] zhengshiJ closed pull request #8793: [fix] Fix a high-risk vulnerability in the Spring framework

Posted by GitBox <gi...@apache.org>.
zhengshiJ closed pull request #8793:
URL: https://github.com/apache/incubator-doris/pull/8793


   


-- 
This is an automated message from the Apache Git Service.
To respond to the message, please log on to GitHub and use the
URL above to go to the specific comment.

To unsubscribe, e-mail: commits-unsubscribe@doris.apache.org

For queries about this service, please contact Infrastructure at:
users@infra.apache.org



---------------------------------------------------------------------
To unsubscribe, e-mail: commits-unsubscribe@doris.apache.org
For additional commands, e-mail: commits-help@doris.apache.org