Thanks for highlighting this....   I have looked at the two false positive 
security reports and will be sending the "Response E: Reject — no 
authentication configured or behavior within expected role"

https://solr.apache.org/security-reporting.html

I haven't gone through the full lifecycle of a security process, so still 
figuring out all the admin steps.

Hopefully once that is done it chnages your -1?

On 2026/04/24 17:30:37 Gus Heck wrote:
> -1 Decisions should be made on related (possibly false positive) security
> reports first.
> 
> On Fri, Apr 24, 2026 at 11:49 AM <[email protected]> wrote:
> 
> > Hello Solr,
> >
> > I'd like to call a vote on releasing the following artifacts as
> > Apache Solr MCP 1.0.0. This vote is being conducted using an
> > Alpha version of the Apache Trusted Releases (ATR) platform.
> > Please report any bugs or issues to the ASF Tooling team.
> >
> > The release candidate page, including downloads, can be found at:
> >
> >   https://release-test.apache.org/vote/solr-mcp/1.0.0
> >
> > The release artifacts are signed with one or more OpenPGP keys from:
> >
> >   https://release-test.apache.org/downloads/solr/KEYS
> >
> > Please review the release candidate and vote accordingly.
> >
> > [ ] +1 Release this package
> > [ ] +0 Abstain
> > [ ] -1 Do not release this package (please provide specific comments)
> >
> > You can vote on ATR at the URL above, or manually by replying to this
> > email.
> >
> > The vote is open for 144 hours.
> >
> >
> > Thanks,
> > Eric Pugh (epugh)
> >
> > This email was sent by [email protected] on the Apache Trusted Releases
> > platform
> >
> > ---------------------------------------------------------------------
> > To unsubscribe, e-mail: [email protected]
> > For additional commands, e-mail: [email protected]
> >
> >
> 
> -- 
> http://www.needhamsoftware.com (work)
> https://a.co/d/b2sZLD9 (my fantasy fiction book)
> 

---------------------------------------------------------------------
To unsubscribe, e-mail: [email protected]
For additional commands, e-mail: [email protected]

Reply via email to