Uploaded image for project: 'AMQ Streams Flink'
  1. AMQ Streams Flink
  2. ENTMQSTFL-255

Update commons-lang3 in Flink K8s Operator

XMLWordPrintable

      The Flink Kubernetes Operator is currently vulnerable to CVE-2025-48924.

      This should be fixable by upgrading to the latest version (3.18 at time of writing) of the org.apache.commons:commons-lang3 dependency.

      We need to open an issue in the upstream JIRA and then a PR against the Operator repo.

              dkornel@redhat.com David Kornel
              rh-ee-tcooper Thomas Cooper
              Votes:
              0 Vote for this issue
              Watchers:
              2 Start watching this issue

                Created:
                Updated:
                Resolved: