Hi we are having CVE-2022-42889 vulnerability in ...
# all-things-deployment
b
Hi we are having CVE-2022-42889 vulnerability in
/usr/local/lib/python3.10/site-packages/pyspark/jars/commons-text-1.6.jar
This is happening in latest release also.. Please let me know if any plans to fix this issue? Or Please let me know if someone has fixed this issue
d
Hi, please avoid posting the same question in multiple channels since it's against our community guidelines. 🙂 @orange-night-91387 Any idea on this?
b
You can view our Slack Gluidelines here: https://datahubproject.io/docs/slack/
o
In what image and what version? This vulnerability has been fixed in all spots where we are scanning our output images.
b
This is happening in 0.10.3 also..
This is coming from "acryldata/datahub-action - 0.0.11"
a
Try 0.0.12
That's the latest release and it shows fixed on Mar 24