Uploaded image for project: 'Debezium'
  1. Debezium
  2. DBZ-7088

Upgrade grpc to 1.24.4 or beyond in order to address CVE-2020-7768

XMLWordPrintable

    • False
    • Hide

      None

      Show
      None
    • False

      Feature request or enhancement

      Debezium Server uses a vulnerable version of SnakeYaml at the following paths:

      /debezium/lib/grpc-google-cloud-pubsublite-v1-1.4.12.jar
       

      Which use case/requirement will be addressed by the proposed feature?

      Address findings here

      Implementation ideas (optional)

      Upgrade grpc to 1.24.4 or later

              Unassigned Unassigned
              bglogan logan r (Inactive)
              Votes:
              0 Vote for this issue
              Watchers:
              3 Start watching this issue

                Created:
                Updated:
                Resolved: