Skip to content

Pinned the commons-beanutils dependency to fix CVE-2025-48734#850

Merged
eirsep merged 1 commit intoopensearch-project:mainfrom
amsiglan:fix-cve-2025-48734
Jul 17, 2025
Merged

Pinned the commons-beanutils dependency to fix CVE-2025-48734#850
eirsep merged 1 commit intoopensearch-project:mainfrom
amsiglan:fix-cve-2025-48734

Conversation

@amsiglan
Copy link
Contributor

Description

Pinned the commons-beanutils dependency to fix CVE-2025-48734

Related Issues

CVE: https://advisories.opensearch.org/advisories/CVE-2025-48734

Check List

  • New functionality includes testing.
  • New functionality has been documented.
  • API changes companion pull request created.
  • Commits are signed per the DCO using --signoff.
  • Public documentation issue/PR created.

By submitting this pull request, I confirm that my contribution is made under the terms of the Apache 2.0 license.
For more information on following Developer Certificate of Origin and signing off your commits, please check here.

Signed-off-by: Amardeepsingh Siglani <amardeep7194@gmail.com>
@eirsep eirsep merged commit 09f4cd6 into opensearch-project:main Jul 17, 2025
9 checks passed
opensearch-trigger-bot bot pushed a commit that referenced this pull request Jul 17, 2025
Signed-off-by: Amardeepsingh Siglani <amardeep7194@gmail.com>
(cherry picked from commit 09f4cd6)
Signed-off-by: github-actions[bot] <github-actions[bot]@users.noreply.github.com>
opensearch-trigger-bot bot pushed a commit that referenced this pull request Jul 17, 2025
Signed-off-by: Amardeepsingh Siglani <amardeep7194@gmail.com>
(cherry picked from commit 09f4cd6)
Signed-off-by: github-actions[bot] <github-actions[bot]@users.noreply.github.com>
eirsep pushed a commit that referenced this pull request Jul 17, 2025
…851)

(cherry picked from commit 09f4cd6)

Signed-off-by: Amardeepsingh Siglani <amardeep7194@gmail.com>
Signed-off-by: github-actions[bot] <github-actions[bot]@users.noreply.github.com>
Co-authored-by: github-actions[bot] <github-actions[bot]@users.noreply.github.com>
eirsep pushed a commit that referenced this pull request Jul 17, 2025
…852)

(cherry picked from commit 09f4cd6)

Signed-off-by: Amardeepsingh Siglani <amardeep7194@gmail.com>
Signed-off-by: github-actions[bot] <github-actions[bot]@users.noreply.github.com>
Co-authored-by: github-actions[bot] <github-actions[bot]@users.noreply.github.com>
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Projects

None yet

Development

Successfully merging this pull request may close these issues.

2 participants