Announce: CVE-2021-29425 (Possible limited path traversal vulnerabily in Apache Commons IO up to version 2.6)

2021-04-12 Thread Jochen Wiedmann
Hi, I'd like to inform you about a possible limited path traversal vulnerability, that has been detected in Apache Commons IO 2.2 to 2.6. This is now being tracked as CVE-2021-29425. Fortunately, this has already been covered in versions 2.7, and 2.8. On behalf of the Apache Commons team, Jochen

Re: [Vote] Create a "machine learning" component

2021-04-12 Thread Avijit Basak
Hi Sorry for the delayed response. Thanks for your patience. Please find my comments below: (1) Why not Spark? [At least post over there (?).] --We can move to Spark. But it will be very much useful if the things can also run without Spark. The use of Spark would make more sense