[
https://issues.apache.org/jira/browse/GOBBLIN-2197?focusedWorklogId=960426&page=com.atlassian.jira.plugin.system.issuetabpanels:worklog-tabpanel#worklog-960426
]
ASF GitHub Bot logged work on GOBBLIN-2197:
-------------------------------------------
Author: ASF GitHub Bot
Created on: 06/Mar/25 06:41
Start Date: 06/Mar/25 06:41
Worklog Time Spent: 10m
Work Description: Blazer-007 opened a new pull request, #4104:
URL: https://github.com/apache/gobblin/pull/4104
Dear Gobblin maintainers,
Please accept this PR. I understand that it will not be reviewed until I
have checked off all the steps below!
### JIRA
- [ ] My PR addresses the following [Gobblin
JIRA](https://issues.apache.org/jira/browse/GOBBLIN/) issues and references
them in the PR title. For example, "[GOBBLIN-XXX] My Gobblin PR"
- https://issues.apache.org/jira/browse/GOBBLIN-2197
### Description
- [ ] Here are some details about my PR, including screenshots (if
applicable):
Replace use of org.codehaus.jackson with org.fasterxml.jackson
### Tests
- [ ] My PR adds the following unit tests __OR__ does not need testing for
this extremely good reason:
### Commits
- [ ] My commits all reference JIRA issues in their subject lines, and I
have squashed multiple commits if they address the same issue. In addition, my
commits follow the guidelines from "[How to write a good git commit
message](http://chris.beams.io/posts/git-commit/)":
1. Subject is separated from body by a blank line
2. Subject is limited to 50 characters
3. Subject does not end with a period
4. Subject uses the imperative mood ("add", not "adding")
5. Body wraps at 72 characters
6. Body explains "what" and "why", not "how"
Issue Time Tracking
-------------------
Worklog Id: (was: 960426)
Remaining Estimate: 0h
Time Spent: 10m
> [SECURITY] please replace use of org.codehaus.jackson
> -----------------------------------------------------
>
> Key: GOBBLIN-2197
> URL: https://issues.apache.org/jira/browse/GOBBLIN-2197
> Project: Apache Gobblin
> Issue Type: Task
> Reporter: PJ Fanning
> Priority: Major
> Time Spent: 10m
> Remaining Estimate: 0h
>
> * org.codehaus.jackson was replaced by com.fasterxml.jackson many years ago.
> * org.codehaus.jackson is not maintained and has lots of security issues
> * changing to com.fasterxml.jackson is usually very easy - often just need
> to fix the imports
> *
> https://github.com/search?q=repo%3Aapache%2Fgobblin+codehaus.jackson&type=code
--
This message was sent by Atlassian Jira
(v8.20.10#820010)