gyfora commented on PR #580:
URL: 
https://github.com/apache/flink-kubernetes-operator/pull/580#issuecomment-1532891704

   cc @mbalassi @yangjf2019 this is the best I could do for the snakeyaml 
vulnerability.
   
   With this we eliminate the 1.33 version from the operator side compeltely. 
Unfortunately it's not possible to transitively upgrade the version for the 
`flink-kubernetes` module (and therefore for `flink-kubernetes-standalone`) 
because the old fabric8 version used by Flink directly uses uses some API from 
snakeyaml that are no longer compatible.


-- 
This is an automated message from the Apache Git Service.
To respond to the message, please log on to GitHub and use the
URL above to go to the specific comment.

To unsubscribe, e-mail: issues-unsubscr...@flink.apache.org

For queries about this service, please contact Infrastructure at:
us...@infra.apache.org

Reply via email to