data-transfer-project icon indicating copy to clipboard operation
data-transfer-project copied to clipboard

There is a vulnerability in Commons IO 2.6,upgrade recommended

Open QiAnXinCodeSafe opened this issue 3 years ago • 3 comments

https://github.com/google/data-transfer-project/blob/ef53a7e92ef77a3efe0bdc378262215d0fe7498d/extensions/data-transfer/portability-data-transfer-facebook/build.gradle#L28

CVE-2021-29425

Recommended upgrade version:2.7

QiAnXinCodeSafe avatar Jun 07 '22 08:06 QiAnXinCodeSafe

I am working on this issue

meeraj257 avatar Oct 11 '22 00:10 meeraj257

@QiAnXinCodeSafe - who can help me here? I have raised the commit and my email address has been added to my corporate google group. The commit shows the email address added. The CLA check is still failing

meeraj257 avatar Oct 21 '22 17:10 meeraj257