Details
-
Improvement
-
Status: Resolved
-
Major
-
Resolution: Fixed
-
None
-
None
Description
The Ranger website embeds a Swagger UI, AFAICS currently version 2.2.10. Older versions of swagger, such as this one, suffer from a number of security weaknesses.
While fortunately https://ranger.apache.org does not have any sensitive cookies or login mechanism or similar, so there isn't really anything to compromise, it would be good to update to a recent version of Swagger. Could you look into that?
It is somewhat unclear to me whether the ranger site is maintained in SVN (https://svn.apache.org/viewvc/ranger/site/) or git (https://github.com/apache/ranger-site)
Attachments
Attachments
Issue Links
- is related to
-
RANGER-3389 Swagger UI Support for Ranger REST API
- Resolved
- links to