Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

[DSIP-36][Dependency] Upgrading dependent component versions #15940

Open
2 tasks done
Tracked by #14102
ruanwenjun opened this issue Apr 29, 2024 · 0 comments
Open
2 tasks done
Tracked by #14102

[DSIP-36][Dependency] Upgrading dependent component versions #15940

ruanwenjun opened this issue Apr 29, 2024 · 0 comments

Comments

@ruanwenjun
Copy link
Member

Search before asking

  • I had searched in the DSIP and found no similar DSIP.

Motivation

There are a lot of dependencies in DS that have CVE, we need to upgrade these versions, otherwise there will be security issues

Design Detail

We need to find safe versions, preferably a compatible one, and upgrade.

Compatibility, Deprecation, and Migration Plan

Should ve Compatibility.

Test Plan

Test by UT/E2E.

Code of Conduct

@ruanwenjun ruanwenjun added Waiting for reply Waiting for reply DSIP and removed Waiting for reply Waiting for reply labels Apr 29, 2024
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Projects
None yet
Development

No branches or pull requests

1 participant