Skip to content

[BUG] Spring RCEs (CVE-2022-22965) #2699

@sandervandegeijn

Description

@sandervandegeijn

Describe the bug
On the opensearch website, newest version: 1.3.1
Docker hub: 1.3.1
!! Github 1.3.0

Can't find the release notes, is this release because of the Spring RCE bugs? The ambiguous communicatie combined with the impact of the vulnerabilities makes me unsure if I should upgrade asap or if the release is about something else.

Expected behavior
Versions are consistent on website, github, docker, etc and there are changenotes and a news item on the website on the focus of the release.

Metadata

Metadata

Assignees

Labels

bugSomething isn't workingsecurityAnything security related

Type

No type

Projects

No projects

Milestone

No milestone

Relationships

None yet

Development

No branches or pull requests

Issue actions