Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

fix(sec): bump postgresql to 42.7.2 #19660

Merged
merged 1 commit into from Mar 6, 2024

Conversation

antobinary
Copy link
Member

@antobinary antobinary commented Feb 21, 2024

What does this PR do?

Bumps up postgress driver to 42.7.2 (used in bbb-recording-imex optional component #14786)

Closes Issue(s)

Closes #none

Motivation

GHSA-24rp-q3w6-vc56

More

Alternatively can remove /usr/share/bbb-web/WEB-INF/lib/postgresql-42.4.3.jar and restart BBB. The dependency is only used for an optional recording API via database setup.

@antobinary antobinary added this to the Release 2.7 milestone Feb 21, 2024
Copy link

sonarcloud bot commented Feb 21, 2024

Quality Gate Passed Quality Gate passed

Issues
6 New issues

Measures
0 Security Hotspots
No data about Coverage
0.0% Duplication on New Code

See analysis details on SonarCloud

Copy link

Automated tests Summary

All the CI tests have passed!

@antobinary antobinary merged commit ca7c2d1 into bigbluebutton:v2.7.x-release Mar 6, 2024
24 checks passed
@antobinary antobinary deleted the postgres-bump1 branch March 6, 2024 02:08
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
None yet
Projects
None yet
Development

Successfully merging this pull request may close these issues.

None yet

1 participant