Uploaded image for project: 'Ranger'
  1. Ranger
  2. RANGER-4304

Update swagger version in Ranger

    XMLWordPrintableJSON

Details

    • Improvement
    • Status: Resolved
    • Major
    • Resolution: Fixed
    • None
    • 3.0.0, 2.5.0
    • documentation
    • None

    Description

      The Ranger website embeds a Swagger UI, AFAICS currently version 2.2.10. Older versions of swagger, such as this one, suffer from a number of security weaknesses.
       
      While fortunately https://ranger.apache.org does not have any sensitive cookies or login mechanism or similar, so there isn't really anything to compromise, it would be good to update to a recent version of Swagger. Could you look into that?
       
      It is somewhat unclear to me whether the ranger site is maintained in SVN (https://svn.apache.org/viewvc/ranger/site/) or git (https://github.com/apache/ranger-site)

      Attachments

        1. 0001-RANGER-4304.patch
          7.53 MB
          Mugdha Varadkar
        2. 0001-RANGER-4304-ranger-site.patch
          18.14 MB
          Mugdha Varadkar
        3. 0002-RANGER-4304.patch
          7.53 MB
          Mugdha Varadkar

        Issue Links

          Activity

            People

              mugdha.varadkar Mugdha Varadkar
              engelen Arnout Engelen
              Votes:
              0 Vote for this issue
              Watchers:
              5 Start watching this issue

              Dates

                Created:
                Updated:
                Resolved: