-
Notifications
You must be signed in to change notification settings - Fork 4.5k
[BEAM-8701] bump commons-io to 2.7 #22433
New issue
Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.
By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.
Already on GitHub? Sign in to your account
[BEAM-8701] bump commons-io to 2.7 #22433
Conversation
Codecov Report
@@ Coverage Diff @@
## master #22433 +/- ##
==========================================
- Coverage 74.20% 74.20% -0.01%
==========================================
Files 710 710
Lines 93547 93547
==========================================
- Hits 69415 69412 -3
- Misses 22855 22858 +3
Partials 1277 1277
Flags with carried forward coverage won't be shown. Click here to find out more.
📣 We’re building smart automated test selection to slash your CI/CD build times. Learn more |
ed9d7b1 to
8616e6a
Compare
|
Run SQL PreCommit |
|
Run Java_Examples_Dataflow PreCommit |
|
Assigning reviewers. If you would like to opt out of this review, comment R: @kileys for label java. Available commands:
The PR bot will only process comments in the main thread (not review comments). |
|
Tests passed. LGTM. |
|
Stopping reviewer notifications for this pull request: review requested by someone other than the bot, ceding control |
aromanenko-dev
left a comment
There was a problem hiding this comment.
Choose a reason for hiding this comment
The reason will be displayed to describe this comment to others. Learn more.
Thanks, LGTM
Also, this version bump is needed because of CVE in v2.6
https://issues.apache.org/jira/browse/BEAM-8701
I think its better to upgrade to at least 2.7 or higher
ex: https://mvnrepository.com/artifact/commons-io/commons-io
Thank you for your contribution! Follow this checklist to help us incorporate your contribution quickly and easily:
R: @username).addresses #123), if applicable. This will automatically add a link to the pull request in the issue. If you would like the issue to automatically close on merging the pull request, commentfixes #<ISSUE NUMBER>instead.CHANGES.mdwith noteworthy changes.See the Contributor Guide for more tips on how to make review process smoother.
To check the build health, please visit https://github.com/apache/beam/blob/master/.test-infra/BUILD_STATUS.md
GitHub Actions Tests Status (on master branch)
See CI.md for more information about GitHub Actions CI.