ranger
ranger copied to clipboard
RANGER-3788: Bump spring to 5.3.20 and spring.security to 5.7.1
PR for https://issues.apache.org/jira/browse/RANGER-3788
Inspired by https://github.com/apache/nifi/pull/6095/files to solve
- https://nvd.nist.gov/vuln/detail/CVE-2022-22970
- https://nvd.nist.gov/vuln/detail/CVE-2022-22971
we already the jira RANGER-3782 and review request is raised review board: https://reviews.apache.org/r/74016/
we already the jira RANGER-3782 and review request is raised review board: https://reviews.apache.org/r/74016/
RANGER-3782 is only for 3.0.0 release flagged... would it be possible to release this in 2.3.0 ?