[ https://issues.apache.org/jira/browse/HADOOP-17316?page=com.atlassian.jira.plugin.system.issuetabpanels:comment-tabpanel&focusedCommentId=18004808#comment-18004808 ]
Shilun Fan commented on HADOOP-17316: ------------------------------------- We have successfully upgraded to JUnit 4.13.2, so this JIRA issue can be closed now. > Upgrade JUnit to 4.13.1 > ----------------------- > > Key: HADOOP-17316 > URL: https://issues.apache.org/jira/browse/HADOOP-17316 > Project: Hadoop Common > Issue Type: Bug > Components: security, test > Reporter: Akira Ajisaka > Priority: Major > > JUnit < 4.13.1 are vulnerable to CVE-2020-15250. The severity is low but it > is worth upgrading. > https://github.com/junit-team/junit4/security/advisories/GHSA-269g-pwp5-87pp -- This message was sent by Atlassian Jira (v8.20.10#820010) --------------------------------------------------------------------- To unsubscribe, e-mail: common-issues-unsubscr...@hadoop.apache.org For additional commands, e-mail: common-issues-h...@hadoop.apache.org