There is a vulnerability in Guava: Google Core Libraries for Java 29.0-jre,upgrade recommended
envgap__google__auto-1331
01 / FAILURE SIGNATURE
As reported upstream
No identifying execution failure has been captured.
Not a benchmark task.
- In a clean container the reported failure did not reproduce, or the known fix did not make the project run.
02 / ENVIRONMENT RECIPE
- Base commit
dac4ccd0f75b2b23b8af3b73105fbdf254a34bdd- Manifest
factory/src/it/functional/pom.xml- Reproduce
Awaiting issue-specific recipe- Run under trace
Awaiting a meaningful runtime command
03 / ORIGINAL ISSUE TEXT
google/auto #1331 · read the original issue
https://github.com/google/auto/blob/d080c8b164467a2bfdcde46d6f5327bab1055b57/factory/src/it/functional/pom.xml#L46-L49 CVE-2020-8908 Recommended upgrade version: 30.1.1-android
04 / LABELS
Labels from the report text only; not yet run
No supported category has been assigned.
Label rules and the text that matched
[]