[ 
https://issues.apache.org/jira/browse/RANGER-3799?page=com.atlassian.jira.plugin.system.issuetabpanels:all-tabpanel
 ]

Pradeep Agrawal reassigned RANGER-3799:
---------------------------------------

    Assignee: Pradeep Agrawal

> Move off jersey 1.0
> -------------------
>
>                 Key: RANGER-3799
>                 URL: https://issues.apache.org/jira/browse/RANGER-3799
>             Project: Ranger
>          Issue Type: Improvement
>          Components: admin, intg, kms, plugins, Ranger
>            Reporter: Michael Smith
>            Assignee: Pradeep Agrawal
>            Priority: Major
>
> Jersey 1.19 is ancient, and if you need Atom feed parsing you're stuck with 
> rome 0.9 and jdom 1.0 (which are going to flag an XXE CVE on jdom, though 
> rome is not technically vulnerable to it because it uses 
> {{setExpandEntities(false)}}).
> Move to Jersey 2.x consistent with other uses of Jersey in Ranger.



--
This message was sent by Atlassian Jira
(v8.20.7#820007)

Reply via email to