Skip to content

Upgrade avro to 1.11.3 to fix CVE-2023-39410 and fix imports#295

Open
sidhdirenge wants to merge 1 commit into
developfrom
jetski/fix-cve-2023-39410
Open

Upgrade avro to 1.11.3 to fix CVE-2023-39410 and fix imports#295
sidhdirenge wants to merge 1 commit into
developfrom
jetski/fix-cve-2023-39410

Conversation

@sidhdirenge

Copy link
Copy Markdown

This PR upgrades avro to 1.11.3 to remediate CVE-2023-39410. It also updates the import of ImmutableList in BigQueryEventConsumer.java to standard Guava import, as the shaded avro package does not exist in 1.11.3.

@sidhdirenge sidhdirenge force-pushed the jetski/fix-cve-2023-39410 branch from 7a946f3 to f773c2b Compare June 18, 2026 05:17
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

Projects

None yet

Development

Successfully merging this pull request may close these issues.

1 participant