epugh opened a new pull request, #205: URL: https://github.com/apache/solr-site/pull/205
The VEX files we have didn't always have the specific jar files that were impacted. They also had fairly loose ranges, with no beginning defined. This PR goes through the vex files, and with Claude's help, tries to figure out when a vulnerability was introduced by looking at the Solr lockfiles etc to figure it out. -- This is an automated message from the Apache Git Service. To respond to the message, please log on to GitHub and use the URL above to go to the specific comment. To unsubscribe, e-mail: [email protected] For queries about this service, please contact Infrastructure at: [email protected] --------------------------------------------------------------------- To unsubscribe, e-mail: [email protected] For additional commands, e-mail: [email protected]
