There is a vulnerability in spring-boot 1.5.15.RELEASE ,upgrade recommended
envgap__apache__iotdb-3064
01 / FAILURE SIGNATURE
As reported upstream
No identifying execution failure has been captured.
Not a benchmark task.
- In a clean container the reported failure did not reproduce, or the known fix did not make the project run.
02 / ENVIRONMENT RECIPE
- Base commit
b5ffa0b1422a3129fca6385607caf8b003768517- Manifest
grafana/pom.xml- Reproduce
Awaiting issue-specific recipe- Run under trace
Awaiting a meaningful runtime command
03 / ORIGINAL ISSUE TEXT
apache/iotdb #3064 · read the original issue
https://github.com/apache/iotdb/blob/7458f4d342b3a8002f12127c98c9552b1a7989e6/grafana/pom.xml#L42 CVE-2020-5421 Recommended upgrade version:2.1.17.RELEASE
04 / LABELS
Labels from the report text only; not yet run
No supported category has been assigned.
Label rules and the text that matched
[]