Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

OP-21877 Fixed com.google.guava cve by upgrading it to 33.0.0-jre. CVE-2023-3635 #25

Merged
merged 1 commit into from
Mar 11, 2024

Conversation

sanopsmx
Copy link
Collaborator

@sanopsmx sanopsmx commented Mar 11, 2024

Jira : https://devopsmx.atlassian.net/browse/OP-21877
Summary : Upgraded com.google.guava version
Testing :

compile successful, no new TCs failed bcoz of this.
service started successfully after this change.
Created trivy-scan locally, this CVE not found
Pre-merge : NA
Post-merge : QA regression testing

@sanopsmx sanopsmx changed the title OP-21879 Fixed com.google.guava cve by upgrading it to 33.0.0-jre. CVE-2023-3635 OP-21877 Fixed com.google.guava cve by upgrading it to 33.0.0-jre. CVE-2023-3635 Mar 11, 2024
Copy link
Collaborator

@aman-agrawal aman-agrawal left a comment

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

Have you verified that it is picking latest version as mentioned in kork?

@sanopsmx
Copy link
Collaborator Author

Have you verified that it is picking latest version as mentioned in kork?

yes...it is picking up the latest.

@aman-agrawal aman-agrawal merged commit 52f280a into OpsMx:OES-1.30.1 Mar 11, 2024
1 check failed
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
None yet
Projects
None yet
Development

Successfully merging this pull request may close these issues.

2 participants