Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

Bump netty.version to 4.1.118.Final #3187

Closed
timd73 opened this issue Feb 19, 2025 · 5 comments · Fixed by #3189
Closed

Bump netty.version to 4.1.118.Final #3187

timd73 opened this issue Feb 19, 2025 · 5 comments · Fixed by #3189
Milestone

Comments

@timd73
Copy link

timd73 commented Feb 19, 2025

See: CVE-2025-24970

Bumping netty.version to 4.1.118.Final should resolve this.

Can 6.5.4.RELEASE be created (quickly?) with this update, to quiet down "Synk" and related vulnerability scanners?

@tishun
Copy link
Collaborator

tishun commented Feb 19, 2025

Thanks for the report, we will bump ASAP

@tishun
Copy link
Collaborator

tishun commented Feb 19, 2025

Should be available any time soon.

@timd73
Copy link
Author

timd73 commented Feb 20, 2025

@tishun
Any idea why I don't see 6.5.4.RELEASE
here ?

@tishun
Copy link
Collaborator

tishun commented Feb 20, 2025

Takes a little time to update. You should still be able to fetch the new version if you change your dependencies. Did you try that?

@timd73
Copy link
Author

timd73 commented Feb 20, 2025

@tishun works like a charm! Thank you!

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
None yet
Projects
None yet
Development

Successfully merging a pull request may close this issue.

2 participants