epugh opened a new pull request, #205:
URL: https://github.com/apache/solr-site/pull/205

   The VEX files we have didn't always have the specific jar files that were 
impacted.   They also had fairly loose ranges, with no beginning defined.   
   
   This PR goes through the vex files, and with Claude's help, tries to figure 
out when a vulnerability was introduced by looking at the Solr lockfiles etc to 
figure it out.   


-- 
This is an automated message from the Apache Git Service.
To respond to the message, please log on to GitHub and use the
URL above to go to the specific comment.

To unsubscribe, e-mail: [email protected]

For queries about this service, please contact Infrastructure at:
[email protected]


---------------------------------------------------------------------
To unsubscribe, e-mail: [email protected]
For additional commands, e-mail: [email protected]

Reply via email to