[ https://issues.apache.org/jira/browse/SOLR-14286?page=com.atlassian.jira.plugin.system.issuetabpanels:comment-tabpanel&focusedCommentId=17046457#comment-17046457 ]
Cao Manh Dat commented on SOLR-14286: ------------------------------------- Hi [~janhoy], I'm seeing this problem on trying to run gradle precommit {code} Execution failed for task ':verifyLocks'. > Found dependencies whose dependents changed: -io.opentracing:opentracing-api:0.33.0 (5 constraints: 4c3c8052) +io.opentracing:opentracing-api:0.33.0 (5 constraints: 4d3cfe52) -io.opentracing:opentracing-util:0.33.0 (3 constraints: f61f583b) +io.opentracing:opentracing-util:0.33.0 (3 constraints: f71f843b) -org.slf4j:slf4j-api:1.7.24 (18 constraints: 6ef487eb) +org.slf4j:slf4j-api:1.7.24 (18 constraints: 74f4c3f7) Please run './gradlew --write-locks'. {code} But it was not get changed by this issue? So should I run {{gradlew --write-locks}}? > Upgrade Jaegar to 1.1.0 > ----------------------- > > Key: SOLR-14286 > URL: https://issues.apache.org/jira/browse/SOLR-14286 > Project: Solr > Issue Type: Improvement > Security Level: Public(Default Security Level. Issues are Public) > Reporter: Cao Manh Dat > Assignee: Cao Manh Dat > Priority: Major > Fix For: master (9.0), 8.5 > > > Rohit Singh pointed to me that we are using thrift 0.12.0 (in > JaegarTracer-Configurator module) which has several security issues. We > should upgrade to Jaegar 1.1.0 which compatible which the current version we > are using. -- This message was sent by Atlassian Jira (v8.3.4#803005) --------------------------------------------------------------------- To unsubscribe, e-mail: issues-unsubscr...@lucene.apache.org For additional commands, e-mail: issues-h...@lucene.apache.org