Uploaded image for project: 'AMQ Streams Flink'
  1. AMQ Streams Flink
  2. ENTMQSTFL-257

Update commons-lang3 in Flink

XMLWordPrintable

    • Icon: Task Task
    • Resolution: Done
    • Icon: Major Major
    • 3.1.0.TP
    • 3.1.0.TP
    • flink
    • None

      Flink is currently vulnerable to CVE-2025-48924.

      This should be fixable by upgrading to the latest version (3.18 at time of writing) of the org.apache.commons:commons-lang3 dependency.

      We need to open an issue in the upstream JIRA and then a PR against the both the master and release-2.1 (backport) branches in the Flink Repo.

              jstejska@redhat.com Jakub Stejskal
              rh-ee-tcooper Thomas Cooper (Inactive)
              Votes:
              0 Vote for this issue
              Watchers:
              2 Start watching this issue

                Created:
                Updated:
                Resolved: