Uploaded image for project: 'Spark'
  1. Spark
  2. SPARK-28713

Bump checkstyle from 8.14 to 8.23

Log workAgile BoardRank to TopRank to BottomAttach filesAttach ScreenshotBulk Copy AttachmentsBulk Move AttachmentsVotersWatch issueWatchersCreate sub-taskConvert to sub-taskMoveLinkCloneLabelsUpdate Comment AuthorReplace String in CommentUpdate Comment VisibilityDelete CommentsDelete
    XMLWordPrintableJSON

Details

    • Improvement
    • Status: Resolved
    • Major
    • Resolution: Fixed
    • 2.4.3
    • 2.4.4, 3.0.0
    • Spark Core
    • None

    Description

      From the GitHub Security Advisory Database:

      Moderate severity vulnerability that affects com.puppycrawl.tools:checkstyle
      Checkstyle prior to 8.18 loads external DTDs by default, which can potentially lead to denial of service attacks or the leaking of confidential information.

      Affected versions: < 8.18

      Attachments

        Activity

          This comment will be Viewable by All Users Viewable by All Users
          Cancel

          People

            fokko Fokko Driesprong Assign to me
            fokko Fokko Driesprong
            Votes:
            0 Vote for this issue
            Watchers:
            2 Start watching this issue

            Dates

              Created:
              Updated:
              Resolved:

              Slack

                Issue deployment