Skip to content

Conversation

@sgarg-CS
Copy link
Contributor

@sgarg-CS sgarg-CS commented Aug 7, 2025

[🍒]

🍒 [cherrypick]

Commit:

PR:

JIRA:

Description:

  1. PLUGIN-1914
    This issue is fixed in the PR by upgrading the version of org.apache.httpcomponents:httpclient library from 4.3.4 to to a secure version 4.5.13 thereby fixing the following vulnerabilities present in the older version.

  2. PLUGIN-1907
    This issue is fixed in the PR by upgrading the ch.qos.logback:logback-classic library from 1.2.8 to a secure version 1.3.15 thereby fixing the following CVE: GHSA-vmq6-5m68-f53m)

@sgarg-CS sgarg-CS changed the title [🍒][PLUGIN-1914] Fix Vulnerability for httpClient [🍒][PLUGIN-1914][PLUGIN-1907] Fix Vulnerability for httpClient and logback-classic Aug 7, 2025
@sgarg-CS sgarg-CS added the build label Aug 7, 2025
@sgarg-CS sgarg-CS closed this Aug 7, 2025
@sgarg-CS sgarg-CS force-pushed the cherry-pick/a169e4f3c79e092730c7577b0bdb98968e60aa9f branch from d7fd35a to 4a3dae4 Compare August 7, 2025 08:54
@sgarg-CS sgarg-CS reopened this Aug 7, 2025
@sgarg-CS sgarg-CS marked this pull request as ready for review August 7, 2025 09:16
@sgarg-CS sgarg-CS requested a review from MrRahulSharma August 7, 2025 09:16
Copy link
Contributor

@MrRahulSharma MrRahulSharma left a comment

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

LGTM

@sgarg-CS sgarg-CS merged commit c7af1cf into data-integrations:release/1.2 Aug 13, 2025
5 checks passed
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

Projects

None yet

Development

Successfully merging this pull request may close these issues.

3 participants