Details
-
Improvement
-
Status: Open
-
Major
-
Resolution: Unresolved
-
1.18.0
-
None
Description
Fix the container vulnerability in CVE-2022-1471 by upgrade the SnakeYaml dependency version in flink-kubernetes module.
Upgrade the Kubernetes Client from 6.6.2 to 6.7.0, thereby upgrading the version of snakeyaml, which the Kubernetes Client indirectly depends on, from 1.33 to 2.0.
Attachments
Issue Links
- is related to
-
FLINK-31815 Fixing the container vulnerability by upgrade the SnakeYaml Maven dependency
- Closed
-
FLINK-31997 Update to Fabric8 6.5.1+ in flink-kubernetes
- Closed
- links to