Uploaded image for project: 'Apache NiFi'
  1. Apache NiFi
  2. NIFI-9420

Upgrade Guava in MiNiFi to 31.0.1

    XMLWordPrintableJSON

Details

    Description

      MiNiFi depends on Guava 26.0 to support caching in the Config Service REST Resource. Although MiNiFi does not use the feature, Guava versions 30 and below have a vulnerability associated with temporary directory creation as described in CVE-2020-8908. Upgrading Guava to 31.0.1 addresses the associated vulnerability.

      Attachments

        Issue Links

          Activity

            People

              exceptionfactory David Handermann
              exceptionfactory David Handermann
              Votes:
              0 Vote for this issue
              Watchers:
              2 Start watching this issue

              Dates

                Created:
                Updated:
                Resolved:

                Time Tracking

                  Estimated:
                  Original Estimate - Not Specified
                  Not Specified
                  Remaining:
                  Remaining Estimate - 0h
                  0h
                  Logged:
                  Time Spent - 0.5h
                  0.5h