Skip to content
New issue

Have a question about this project? # for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “#”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? # to your account

Upgrade minor jetty version to fix vulnerability #17477

Open
wants to merge 1 commit into
base: master
Choose a base branch
from

Conversation

ashibhardwaj
Copy link

Upgrading jetty from version 9.4.54.v20240208 to 9.4.56.v20240826 to fix CVE-2024-8184.

Refer: https://avd.aquasec.com/nvd/cve-2024-8184
(org.eclipse.jetty:jetty-server: jetty: Jetty ThreadLimitHandler.getRemote() vulnerable to remote DoS attacks)

@Akshat-Jain
Copy link
Contributor

Hi @ashibhardwaj, thanks for contributing to Druid!
It appears that this change is already included in the following patch by @findingrish: #17385.

# for free to join this conversation on GitHub. Already have an account? # to comment
Projects
None yet
Development

Successfully merging this pull request may close these issues.

2 participants