commit | 462188340c3b1d038adef6c0659b7d8b247e3963 | [log] [tgz] |
---|---|---|
author | Lari Hotari <lhotari@users.noreply.github.com> | Thu Jun 24 06:47:02 2021 +0300 |
committer | GitHub <noreply@github.com> | Wed Jun 23 20:47:02 2021 -0700 |
tree | a5cc0daf1fcf69bc4d2d5a677b2219b7215da700 | |
parent | dcb2b95f50ad8177d9fb4a1c9b5c72b8be70aa1e [diff] |
[Security] Exclude grpc-okhttp dependency (#2735) Fixes #2733 ### Motivation The okhttp dependency version 2.7.4 is old and vulnerable. This dependency isn't needed and it causes Bookkeeper to be flagged for security vulnerabilities. ### Changes - exclude grpc-okhttp dependency which pulls in okhttp 2.7.4 - update license files
Apache BookKeeper is a scalable, fault tolerant and low latency storage service optimized for append-only workloads.
It is suitable for being used in following scenarios:
Please visit the Documentation from the project website for more information.
For filing bugs, suggesting improvements, or requesting new features, help us out by opening a Github issue or opening an Apache jira.
Subscribe or mail the user@bookkeeper.apache.org list - Ask questions, find answers, and also help other users.
Subscribe or mail the dev@bookkeeper.apache.org list - Join development discussions, propose new ideas and connect with contributors.
Join us on Slack - This is the most immediate way to connect with Apache BookKeeper committers and contributors.
We feel that a welcoming open community is important and welcome contributions.
See Developer Setup to get your local environment setup.
Take a look at our open issues: JIRA Issues Github Issues.
Review our coding style and follow our pull requests to learn about our conventions.
Make your changes according to our contribution guide.