Skip to content

Conversation

@ti-srebot
Copy link
Collaborator

@ti-srebot ti-srebot commented Apr 7, 2022

cherry-pick #584 to release-3.2
You can switch your code base to this Pull Request by using git-extras:

# In client-java repo:
git pr https://github.com/tikv/client-java/pull/586

After apply modifications, you can push your change to this PR via:

git push git@github.com:ti-srebot/client-java.git pr/586:release-3.2-7fa24c3206d1

Signed-off-by: iosmanthus myosmanthustree@gmail.com

What problem does this PR solve?

Issue Number: close #567

Problem Description:

upgrade jackson-databind to 2.13.2.2 to fix CVE-2020-36518

What is changed and how does it work?

Related changes

  • Need to cherry-pick the release branch
  • Need to update the documentation
  • Need to be included in the release note
  • NO related changes

Signed-off-by: ti-srebot <ti-srebot@pingcap.com>
@ti-srebot
Copy link
Collaborator Author

/run-all-tests

@codecov
Copy link

codecov bot commented Apr 7, 2022

Codecov Report

❗ No coverage uploaded for pull request base (release-3.2@ab591d8). Click here to learn what that means.
The diff coverage is n/a.

@@              Coverage Diff               @@
##             release-3.2     #586   +/-   ##
==============================================
  Coverage               ?   32.27%           
  Complexity             ?     1340           
==============================================
  Files                  ?      279           
  Lines                  ?    17462           
  Branches               ?     1981           
==============================================
  Hits                   ?     5636           
  Misses                 ?    11222           
  Partials               ?      604           

Continue to review full report at Codecov.

Legend - Click here to learn more
Δ = absolute <relative> (impact), ø = not affected, ? = missing data
Powered by Codecov. Last update ab591d8...cd26c3c. Read the comment docs.

Copy link
Member

@zz-jason zz-jason left a comment

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

LGTM

@zz-jason zz-jason merged commit 058ba27 into tikv:release-3.2 Apr 8, 2022
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Projects

None yet

Development

Successfully merging this pull request may close these issues.

3 participants