[jira] [Created] (KAFKA-12752) CVE-2021-28168 upgrade jersey to 2.34 or 3.02

2021-05-05 Thread John Stacy (Jira)
John Stacy created KAFKA-12752: -- Summary: CVE-2021-28168 upgrade jersey to 2.34 or 3.02 Key: KAFKA-12752 URL: https://issues.apache.org/jira/browse/KAFKA-12752 Project: Kafka Issue Type: Bug

[jira] [Comment Edited] (KAFKA-12359) Update Jetty to 11

2021-03-01 Thread John Stacy (Jira)
[ https://issues.apache.org/jira/browse/KAFKA-12359?page=com.atlassian.jira.plugin.system.issuetabpanels:comment-tabpanel&focusedCommentId=17293247#comment-17293247 ] John Stacy edited comment on KAFKA-12359 at 3/1/21, 11:49 PM:

[jira] [Commented] (KAFKA-12359) Update Jetty to 11

2021-03-01 Thread John Stacy (Jira)
[ https://issues.apache.org/jira/browse/KAFKA-12359?page=com.atlassian.jira.plugin.system.issuetabpanels:comment-tabpanel&focusedCommentId=17293247#comment-17293247 ] John Stacy commented on KAFKA-12359: Due to this vulnerability, you might want to bu

[jira] [Resolved] (KAFKA-12325) Is Kafka affected by Scala security vulnerability (CVE-2017-15288)?

2021-02-15 Thread John Stacy (Jira)
[ https://issues.apache.org/jira/browse/KAFKA-12325?page=com.atlassian.jira.plugin.system.issuetabpanels:all-tabpanel ] John Stacy resolved KAFKA-12325. Resolution: Not A Problem > Is Kafka affected by Scala security vulnerability (CVE-2017-15288)? >

[jira] [Commented] (KAFKA-12325) Is Kafka affected by Scala security vulnerability (CVE-2017-15288)?

2021-02-15 Thread John Stacy (Jira)
[ https://issues.apache.org/jira/browse/KAFKA-12325?page=com.atlassian.jira.plugin.system.issuetabpanels:comment-tabpanel&focusedCommentId=17284748#comment-17284748 ] John Stacy commented on KAFKA-12325: [~ijuma] That answers my concern. Thanks. > Is

[jira] [Commented] (KAFKA-12325) Is Kafka affected by Scala security vulnerability (CVE-2017-15288)?

2021-02-12 Thread John Stacy (Jira)
[ https://issues.apache.org/jira/browse/KAFKA-12325?page=com.atlassian.jira.plugin.system.issuetabpanels:comment-tabpanel&focusedCommentId=17283684#comment-17283684 ] John Stacy commented on KAFKA-12325: Are you talking about "defaultScala212Version"

[jira] [Updated] (KAFKA-12325) Is Kafka affected by Scala security vulnerability (CVE-2017-15288)?

2021-02-11 Thread John Stacy (Jira)
[ https://issues.apache.org/jira/browse/KAFKA-12325?page=com.atlassian.jira.plugin.system.issuetabpanels:all-tabpanel ] John Stacy updated KAFKA-12325: --- Summary: Is Kafka affected by Scala security vulnerability (CVE-2017-15288)? (was: Update to secure

[jira] [Created] (KAFKA-12325) Update to secure versions of scala libraries due to CVE-2017-15288

2021-02-11 Thread John Stacy (Jira)
John Stacy created KAFKA-12325: -- Summary: Update to secure versions of scala libraries due to CVE-2017-15288 Key: KAFKA-12325 URL: https://issues.apache.org/jira/browse/KAFKA-12325 Project: Kafka

[jira] [Created] (KAFKA-12324) Upgrade jetty to fix CVE-2020-27218

2021-02-11 Thread John Stacy (Jira)
John Stacy created KAFKA-12324: -- Summary: Upgrade jetty to fix CVE-2020-27218 Key: KAFKA-12324 URL: https://issues.apache.org/jira/browse/KAFKA-12324 Project: Kafka Issue Type: Bug Affects V