[ https://issues.apache.org/jira/browse/HADOOP-19225?page=com.atlassian.jira.plugin.system.issuetabpanels:comment-tabpanel&focusedCommentId=17956145#comment-17956145 ]
ASF GitHub Bot commented on HADOOP-19225: ----------------------------------------- pjfanning commented on PR #7702: URL: https://github.com/apache/hadoop/pull/7702#issuecomment-2940576234 @steveloughran is this something that can be included in the RC2 for 3.4.2? > Upgrade Jetty to 9.4.57.v20241219 due to CVE-2024-8184 > ------------------------------------------------------ > > Key: HADOOP-19225 > URL: https://issues.apache.org/jira/browse/HADOOP-19225 > Project: Hadoop Common > Issue Type: Improvement > Components: build > Reporter: Palakur Eshwitha Sai > Assignee: PJ Fanning > Priority: Major > Labels: pull-request-available > Fix For: 3.5.0 > > > Upgrade to jetty 9.4.56 due to > [CVE-2024-22201|https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2024-22201] > [CVE-2023-44487|https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2023-44487] > [CVE-2024-8184|https://nvd.nist.gov/vuln/detail/CVE-2024-8184] : > [https://github.com/advisories/GHSA-g8m5-722r-8whq] -- This message was sent by Atlassian Jira (v8.20.10#820010) --------------------------------------------------------------------- To unsubscribe, e-mail: common-issues-unsubscr...@hadoop.apache.org For additional commands, e-mail: common-issues-h...@hadoop.apache.org