When will the latest sec vulnerability be fixed in Smallrye Reactive Messaging? #31119
Unanswered
RJJdeVries
asked this question in
Q&A
Replies: 2 comments 4 replies
-
/cc @Ladicek (smallrye), @cescoffier (reactive-messaging), @jmartisk (smallrye), @ozangunalp (reactive-messaging), @phillip-kruger (smallrye), @radcortez (smallrye) |
Beta Was this translation helpful? Give feedback.
1 reply
-
This CVE specifically involves the Kafka Connect API, so AFAIU it isn't relevant for |
Beta Was this translation helpful? Give feedback.
3 replies
Sign up for free
to join this conversation on GitHub.
Already have an account?
Sign in to comment
Uh oh!
There was an error while loading. Please reload this page.
-
Hi there,
There's a security vulnerability in the Apache Kafka client version using in the quarkus-smallrye-reactive-messaging-kafka dependency. It's the Apache Kafka versions below 3.2. Does anyone know when this will be fixed in Quarkus?
It's this one: CVE-2023-25194
Thanks!
Beta Was this translation helpful? Give feedback.
All reactions