Details
-
Dependency upgrade
-
Status: Resolved
-
Major
-
Resolution: Fixed
-
None
-
None
-
None
Description
Snakeyaml 1.3 has a security vulnerability. Cassandra version is storm has pulls in this version. Upgrade Cassandra to a version that uses snakeyaml 2.0.
See Storm snakeyaml 2.0 upgrade in PR: https://github.com/apache/storm/pull/3523