Replies: 1 comment
-
Yes, see: Apart from the upstream use in Apache TinkerPop, it may be a direct dependency of JanusGraph. I did not check that. |
Beta Was this translation helpful? Give feedback.
0 replies
Sign up for free
to join this conversation on GitHub.
Already have an account?
Sign in to comment
Uh oh!
There was an error while loading. Please reload this page.
-
Good morning folks,
I would like to ask if current JanusGraph versions are effected by https://nvd.nist.gov/vuln/detail/CVE-2022-42889 . I have the seen the Apache Commons in the pom and my trivy shows an issue. However, the CVE is hard to use. But just a friendly question to be sure.
Beta Was this translation helpful? Give feedback.
All reactions