Skip to content

Suppress CVE-2022-46337 and CVEs below score of 9 for the patch branch#15524

Merged
LakshSingla merged 1 commit intoapache:28.0.1from
LakshSingla:28.0.1-dep-check
Dec 8, 2023
Merged

Suppress CVE-2022-46337 and CVEs below score of 9 for the patch branch#15524
LakshSingla merged 1 commit intoapache:28.0.1from
LakshSingla:28.0.1-dep-check

Conversation

@LakshSingla
Copy link
Copy Markdown
Contributor

Suppress CVE-2022-46337 and CVEs below the score of 9 for the patch branch to ensure that the build process goes smoothly since this is a patch release on top of 28.0.0.

CVE-2022-46337 has a high CVSS score (>9), however, it is suppressed in the master branch since it doesn't apply to Druid, but the patch couldn't be backported cleanly

@LakshSingla LakshSingla added this to the 28.0.1 milestone Dec 8, 2023
@LakshSingla
Copy link
Copy Markdown
Contributor Author

Failures are unrelated.

@LakshSingla LakshSingla merged commit e76b87f into apache:28.0.1 Dec 8, 2023
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Projects

None yet

Development

Successfully merging this pull request may close these issues.

2 participants