[ https://issues.apache.org/jira/browse/RANGER-3799?page=com.atlassian.jira.plugin.system.issuetabpanels:all-tabpanel ]
Pradeep Agrawal reassigned RANGER-3799: --------------------------------------- Assignee: Pradeep Agrawal > Move off jersey 1.0 > ------------------- > > Key: RANGER-3799 > URL: https://issues.apache.org/jira/browse/RANGER-3799 > Project: Ranger > Issue Type: Improvement > Components: admin, intg, kms, plugins, Ranger > Reporter: Michael Smith > Assignee: Pradeep Agrawal > Priority: Major > > Jersey 1.19 is ancient, and if you need Atom feed parsing you're stuck with > rome 0.9 and jdom 1.0 (which are going to flag an XXE CVE on jdom, though > rome is not technically vulnerable to it because it uses > {{setExpandEntities(false)}}). > Move to Jersey 2.x consistent with other uses of Jersey in Ranger. -- This message was sent by Atlassian Jira (v8.20.7#820007)