Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

Use latest version of checkstyle to avoid Guava CVE #36

Merged
merged 1 commit into from
Jan 13, 2025

Conversation

dbwiddis
Copy link
Member

Description

Checkstyle 9.3 is CVE-impacted. Directs gradle to use latest version to avoid this.

Issues Resolved

Fixes #4 (again)

By submitting this pull request, I confirm that my contribution is made under the terms of the Apache 2.0 license.
For more information on following Developer Certificate of Origin and signing off your commits, please check here.

@dbwiddis dbwiddis force-pushed the checkstyle-version branch 2 times, most recently from 67ad56f to 6506378 Compare January 12, 2025 22:31
@dbwiddis dbwiddis merged commit 03d8018 into opensearch-project:main Jan 13, 2025
10 checks passed
@dbwiddis dbwiddis deleted the checkstyle-version branch January 13, 2025 04:06
opensearch-trigger-bot bot pushed a commit that referenced this pull request Jan 13, 2025
Signed-off-by: Daniel Widdis <[email protected]>
(cherry picked from commit 03d8018)
Signed-off-by: github-actions[bot] <github-actions[bot]@users.noreply.github.com>
dbwiddis pushed a commit that referenced this pull request Jan 13, 2025
(cherry picked from commit 03d8018)

Signed-off-by: Daniel Widdis <[email protected]>
Signed-off-by: github-actions[bot] <github-actions[bot]@users.noreply.github.com>
Co-authored-by: github-actions[bot] <github-actions[bot]@users.noreply.github.com>
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Projects
None yet
Development

Successfully merging this pull request may close these issues.

checkstyle-9.3.jar: 1 vulnerabilities (highest severity is: 5.5)
2 participants