[
https://issues.apache.org/jira/browse/CONNECTORS-1565?page=com.atlassian.jira.plugin.system.issuetabpanels:comment-tabpanel=16751459#comment-16751459
]
Markus Schuch commented on CONNECTORS-1565:
---
r1852069 (trunk)
> Upgrade
[
https://issues.apache.org/jira/browse/CONNECTORS-1565?page=com.atlassian.jira.plugin.system.issuetabpanels:comment-tabpanel=16749629#comment-16749629
]
Markus Schuch commented on CONNECTORS-1565:
---
Ran MCF with this library version for some
[
https://issues.apache.org/jira/browse/CONNECTORS-1565?page=com.atlassian.jira.plugin.system.issuetabpanels:comment-tabpanel=16736878#comment-16736878
]
Karl Wright commented on CONNECTORS-1565:
-
I'm concerned that we would break something
[
https://issues.apache.org/jira/browse/CONNECTORS-1565?page=com.atlassian.jira.plugin.system.issuetabpanels:comment-tabpanel=16736848#comment-16736848
]
Markus Schuch commented on CONNECTORS-1565:
---
Thanks for your analysis Karl.
I still vote
[
https://issues.apache.org/jira/browse/CONNECTORS-1565?page=com.atlassian.jira.plugin.system.issuetabpanels:comment-tabpanel=16736011#comment-16736011
]
Karl Wright commented on CONNECTORS-1565:
-
This CVE applies only to deserialization of