You signed in with another tab or window. Reload to refresh your session.You signed out in another tab or window. Reload to refresh your session.You switched accounts on another tab or window. Reload to refresh your session.Dismiss alert
Hi,
Anchore scan has detected 3 vulnerabilities from the package 'org.bouncycastle', These are being flagged as High severity even though no vulnerability score is present in NVD database.
Hi,
Anchore scan has detected 3 vulnerabilities from the package 'org.bouncycastle', These are being flagged as High severity even though no vulnerability score is present in NVD database.
These packages are present in ksql as a dependency
org.bouncycastle:bcprov-jdk18on:jar
bouncycastle:bcpkix-jdk18on:jar
The mitigation is to upgrade to the fixed version i.e. 1.78
Are there any plans to upgrade these packages?
The text was updated successfully, but these errors were encountered: