Skip to content

Navigation Menu

Sign in
Appearance settings

Search code, repositories, users, issues, pull requests...

Provide feedback

We read every piece of feedback, and take your input very seriously.

Saved searches

Use saved searches to filter your results more quickly

Sign up
Appearance settings

Security fixes 26072024 - This will resolve some critical vulnerabilities present in springboot, kafka, kafka-client etc. #4473

New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

Open
patilk234 wants to merge 3 commits into provectus:master
base: master
Choose a base branch
Loading
from patilk234:security-fixes-26072024

Conversation

@patilk234
Copy link

@patilk234 patilk234 commented Jul 26, 2024

  • Breaking change? (if so, please describe the impact and migration path for existing application instances)

What changes did you make? (Give an overview)

Is there anything you'd like reviewers to focus on?

How Has This Been Tested? (put an "x" (case-sensitive!) next to an item)

  • No need to
  • Manually (please, describe, if necessary)
  • Unit checks
  • Integration checks
  • Covered by existing automation

Checklist (put an "x" (case-sensitive!) next to all the items, otherwise the build will fail)

  • I have performed a self-review of my own code
  • I have commented my code, particularly in hard-to-understand areas
  • I have made corresponding changes to the documentation (e.g. ENVIRONMENT VARIABLES)
  • My changes generate no new warnings (e.g. Sonar is happy)
  • I have added tests that prove my fix is effective or that my feature works
  • New and existing unit tests pass locally with my changes
  • Any dependent changes have been merged

Check out Contributing and Code of Conduct

A picture of a cute animal (not mandatory but encouraged)

patilk234 added 3 commits July 26, 2024 13:23
This bump will resolve security vulnerabilities present in kafka-client 3.5.0 and tomcat 10.1.12 and snappy-java 1.1.10.0
Upgrading aws-msk-iam-auth will resolve vulns present in 1.1.7
Upgrading kafka version to 3.6.1 will resolve security vulns from 3.3.1
@patilk234 patilk234 requested review from a team as code owners July 26, 2024 08:00
Copy link

@github-actions github-actions bot left a comment

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

Hello there patilk234! 👋

Thank you and congrats 🎉 for opening your first PR on this project! ✨ 💖

We will try to review it soon!

Copy link
Contributor

@patilk234 thanks for your PR. Me and @Haarolean no longer support this repo. Please use https://github.com/kafbat/kafka-ui/

Copy link
Author

patilk234 commented Jul 26, 2024 via email

Thank you so much for letting me know. Much love to you guys for making/contributing to such a beautiful thing ❤️
...
On Fri, 26 Jul, 2024, 8:24 pm German Osin, ***@***.***> wrote: @patilk234 <https://github.com/patilk234> thanks for your PR. Me and @Haarolean <https://github.com/Haarolean> no longer support this repo. Please use https://github.com/kafbat/kafka-ui/ — Reply to this email directly, view it on GitHub <#4473 (comment)>, or unsubscribe <https://github.com/notifications/unsubscribe-auth/AM7KMXHZHESDBJKTTDA6KPTZOJPLBAVCNFSM6AAAAABLQAUB7KVHI2DSMVQWIX3LMV43OSLTON2WKQ3PNVWWK3TUHMZDENJSHE2DAMBUGY> . You are receiving this because you were mentioned.Message ID: ***@***.***>
Haarolean reacted with heart emoji

Copy link
Contributor

@patilk234 thanks for the kind words, please raise a PR there :)

Copy link
Author

patilk234 commented Jul 26, 2024 via email

Thanks, I will. ❤️
...
On Fri, 26 Jul, 2024, 9:27 pm Roman Zabaluev, ***@***.***> wrote: @patilk234 <https://github.com/patilk234> thanks for the kind words, please raise a PR there :) — Reply to this email directly, view it on GitHub <#4473 (comment)>, or unsubscribe <https://github.com/notifications/unsubscribe-auth/AM7KMXFRTOVXPX4XMXO7V6DZOJWWFAVCNFSM6AAAAABLQAUB7KVHI2DSMVQWIX3LMV43OSLTON2WKQ3PNVWWK3TUHMZDENJTGA2TAOBYGA> . You are receiving this because you were mentioned.Message ID: ***@***.***>

Copy link

@germanosin and @Haarolean, is this repo no longer actively maintained at all, or have the maintainers changed?

If the repo isn't actively maintained, it'd be great to update the README.md file to make that obvious.

Copy link
Contributor

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Reviewers

@github-actions github-actions[bot] github-actions[bot] left review comments

At least 1 approving review is required to merge this pull request.

Assignees

No one assigned

Labels

None yet

Projects

None yet

Milestone

No milestone

Development

Successfully merging this pull request may close these issues.

AltStyle によって変換されたページ (->オリジナル) /