Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

bump eureka to 1.10.13 #3994

Closed
wants to merge 1 commit into from
Closed

Conversation

candrews
Copy link
Contributor

Includes a bump in transitive dependency xstream which addresses CVE-2021-213{41-51}

See Netflix/eureka#1385

Includes a bump in transitive dependency xstream which addresses CVE-2021-213{41-51}

See Netflix/eureka#1385
@codecov
Copy link

codecov bot commented Apr 22, 2021

Codecov Report

Merging #3994 (dbf3e7e) into master (9804818) will not change coverage.
The diff coverage is n/a.

Impacted file tree graph

@@            Coverage Diff            @@
##             master    #3994   +/-   ##
=========================================
  Coverage     55.11%   55.11%           
  Complexity      507      507           
=========================================
  Files            57       57           
  Lines          2464     2464           
  Branches        228      228           
=========================================
  Hits           1358     1358           
  Misses         1019     1019           
  Partials         87       87           

Continue to review full report at Codecov.

Legend - Click here to learn more
Δ = absolute <relative> (impact), ø = not affected, ? = missing data
Powered by Codecov. Last update 9804818...dbf3e7e. Read the comment docs.

@spencergibb spencergibb added dependencies Pull requests that update a dependency file and removed waiting-for-triage labels Apr 27, 2021
@spencergibb spencergibb added this to In progress in 2020.0.3 via automation Apr 27, 2021
@spencergibb spencergibb added this to In progress in Hoxton.SR12 via automation Apr 27, 2021
@spencergibb spencergibb added this to the 2.2.9.RELEASE milestone Apr 27, 2021
@gdut-yy
Copy link

gdut-yy commented May 21, 2021

High Severity Vulnerability in xstream-1.4.16.jar (CVE-2021-29505)

Netflix/eureka#1396

Netflix/eureka#1397

2020.0.3 automation moved this from In progress to Done May 21, 2021
Hoxton.SR12 automation moved this from In progress to Done May 21, 2021
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
dependencies Pull requests that update a dependency file
Projects
No open projects
2020.0.3
  
Done
Hoxton.SR12
  
Done
Development

Successfully merging this pull request may close these issues.

None yet

4 participants