[
https://issues.apache.org/jira/browse/HADOOP-17316?page=com.atlassian.jira.plugin.system.issuetabpanels:comment-tabpanel&focusedCommentId=18004808#comment-18004808
]
Shilun Fan commented on HADOOP-17316:
-------------------------------------
We have successfully upgraded to JUnit 4.13.2, so this JIRA issue can be closed
now.
> Upgrade JUnit to 4.13.1
> -----------------------
>
> Key: HADOOP-17316
> URL: https://issues.apache.org/jira/browse/HADOOP-17316
> Project: Hadoop Common
> Issue Type: Bug
> Components: security, test
> Reporter: Akira Ajisaka
> Priority: Major
>
> JUnit < 4.13.1 are vulnerable to CVE-2020-15250. The severity is low but it
> is worth upgrading.
> https://github.com/junit-team/junit4/security/advisories/GHSA-269g-pwp5-87pp
--
This message was sent by Atlassian Jira
(v8.20.10#820010)
---------------------------------------------------------------------
To unsubscribe, e-mail: [email protected]
For additional commands, e-mail: [email protected]