druid/extensions-contrib/compressed-bigdecimal
Tejaswini Bandlamudi 550a66d71e
Upgrade jackson-databind to 2.12.7 (#14770)
The current version of jackson-databind is flagged for vulnerabilities CVE-2020-28491 (Although cbor format is not used in druid), CVE-2020-36518 (Seems genuine as deeply nested json in can cause resource exhaustion). Updating the dependency to the latest version 2.12.7 to fix these vulnerabilities.
2023-08-09 12:22:16 +05:30
..
src Fix `EARLIEST_BY`/`LATEST_BY` signature and include function name in signature. (#14352) 2023-06-06 09:41:05 -07:00
pom.xml Upgrade jackson-databind to 2.12.7 (#14770) 2023-08-09 12:22:16 +05:30