Re: Welcome Jason Gerlowski as Solr's new PMC Chair

2024-04-24 Thread Arnout Engelen
pache.org > For additional commands, e-mail: dev-h...@solr.apache.org > > -- Arnout Engelen ASF Security Response Apache Pekko PMC member, ASF Member NixOS Committer Independent Open Source consultant

Re: Publishing dependency vulnerability information

2022-11-30 Thread Arnout Engelen
I like having a tangible starting point to talk about and improve on :). Kind regards, Arnout > On Wed, Nov 30, 2022 at 3:15 AM Arnout Engelen wrote: > > > Hi, > > > > We regularly get questions asking whether Solr is affected by > > vulnerabilities that we

Publishing dependency vulnerability information

2022-11-30 Thread Arnout Engelen
Hi, We regularly get questions asking whether Solr is affected by vulnerabilities that were disclosed for a dependency. With all the recent enthusiasm around vulnerability scanning and SBOM's, I think we can expect the number of such questions to rise. Solr already does a great job of collecting