We read every piece of feedback, and take your input very seriously.
To see all available qualifiers, see our documentation.
Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.
By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.
Already on GitHub? Sign in to your account
The currently used version of protobuf-java is 3.9, which has a reported CVE issue:
https://cloud.google.com/support/bulletins#gcp-2022-001 https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2021-22569
Even if this has no attack vectors here it cause alerts in scanning tools like Whitesource.
Expectation: Please update to the latest version (version 3.19.3 at the time of writing).
The text was updated successfully, but these errors were encountered:
Oh, there seems to be already a pending pull request for this issue... #135
Sorry, something went wrong.
Thanks! We'll include that in next release, most probably next week!
No branches or pull requests
The currently used version of protobuf-java is 3.9, which has a reported CVE issue:
https://cloud.google.com/support/bulletins#gcp-2022-001
https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2021-22569
Even if this has no attack vectors here it cause alerts in scanning tools like Whitesource.
Expectation:
Please update to the latest version (version 3.19.3 at the time of writing).
The text was updated successfully, but these errors were encountered: