Jeff Lu

Results 59 comments of Jeff Lu

Updating the possible CVE fixes list in case description by upgrading the Jenkins Core to the latest version.

Thanks for the posting of requesting a new feature, @nateynateynate , while I am not certain if this is the best repo for your request, I am adding a few...

Adding @bbarani to comment on future supporting PowerPC 64 Little Endian ..thanks!

Hi, @rishabh6788 , @IanHoang, if you can help commnet on this issue, thanks!!

The current latest Jenkins LTE version, `2.440.1` , does not address this CVE or upgarde `org.apache.commons:commons-compress` in dependency. We may have to wait for the future Jenkins core release

Hi @marcohald, thank you for reaching out to discuss improving OpenSearch. If I understand correctly, you're considering pre-downloading several versions of the OpenSearch package locally. Are you planning to use...

Hi, @DarshitChanpura, sorry for the late, the `opensearch-security-1.4.0.0` is in place now,, could you trigger the test again on your [PR](https://github.com/opensearch-project/security-dashboards-plugin/pull/1766) to see how it works? thanks!

I drafted a PR to test CVE fixes with the suggested fix but has to close it as it will remediate 6 vulnerabilities, but introduce 4 new vulnerabilities.