[ 
https://issues.apache.org/jira/browse/TINKERPOP-1067?page=com.atlassian.jira.plugin.system.issuetabpanels:comment-tabpanel&focusedCommentId=15081505#comment-15081505
 ] 

Jason Plurad commented on TINKERPOP-1067:
-----------------------------------------

What is the security issue?

TinkerPop is using Groovy 2.4.1 
https://github.com/pluradj/incubator-tinkerpop/blob/master/pom.xml#L128

There is some discussion about cutting the 2.4.6 release on the Groovy dev list 
http://mail-archives.apache.org/mod_mbox/groovy-dev/201601.mbox/%3CCADQzvmmp88WFi2p5qb2YMybizfEDJ56MhPYGqTKAxHKK_HOzKA%40mail.gmail.com%3E
 

> Update Groovy to 2.4.5
> ----------------------
>
>                 Key: TINKERPOP-1067
>                 URL: https://issues.apache.org/jira/browse/TINKERPOP-1067
>             Project: TinkerPop
>          Issue Type: Improvement
>          Components: groovy
>    Affects Versions: 3.1.0-incubating
>            Reporter: Marko A. Rodriguez
>             Fix For: 3.1.1-incubating
>
>
> Sven is saying there is a known security issue in Groovy 2.4.4 and that we 
> should update to 2.4.5.



--
This message was sent by Atlassian JIRA
(v6.3.4#6332)

Reply via email to