Skip to content

Pull requests: opensearch-project/OpenSearch

Author
Filter by author
Loading
Label
Filter by label
Loading
Use alt + click/return to exclude labels
or + click/return for logical OR
Projects
Filter by project
Loading
Milestones
Filter by milestone
Loading
Reviews
Assignee
Filter by who’s assigned
Sort

Pull requests list

[CVE-2020-7692] Upgrade google-oauth-client for Google cloud plugins CVE Fixes a CVE v1.0.0 Version 1.0.0 v2.0.0 Version 2.0.0
#662 by adnapibar was merged May 13, 2021 Loading…
2 tasks done
[CVE-2018-11765] Upgrade hadoop dependencies for hdfs plugin to mitigate CVEs. CVE Fixes a CVE v1.0.0 Version 1.0.0 v2.0.0 Version 2.0.0
#654 by adnapibar was merged May 13, 2021 Loading…
2 of 5 tasks
Upgrade dependencies to mitigate multiple CVEs CVE Fixes a CVE v1.0.0 Version 1.0.0 v2.0.0 Version 2.0.0
#657 by adnapibar was merged May 18, 2021 Loading…
2 of 5 tasks
[CVE] Resolve CVEs for ingest-attachment plugin dependencies CVE Fixes a CVE v1.0.0 Version 1.0.0 v2.0.0 Version 2.0.0
#666 by adnapibar was merged May 11, 2021 Loading…
2 tasks done
[CVE] Upgrade dependencies for Azure related plugins to mitigate CVEs CVE Fixes a CVE v2.0.0 Version 2.0.0
#688 by abbashus was merged May 25, 2021 Loading…
2 of 5 tasks
[CVE] Update external library 'pdfbox' version to 2.0.24 to reduce vulnerability CVE Fixes a CVE security Anything security related v1.0.0 Version 1.0.0 v2.0.0 Version 2.0.0
#883 by tlfeng was merged Jun 25, 2021 Loading…
2 of 5 tasks
Remove old ES libraries used in reindex due to CVEs CVE Fixes a CVE :test Adding or fixing a test v1.2.0 Issues related to version 1.2.0 v2.0.0 Version 2.0.0
#1359 by xuezhou25 was merged Oct 20, 2021 Loading…
1 of 5 tasks
Upgrading netty version to 4.1.69.Final CVE Fixes a CVE v1.2.0 Issues related to version 1.2.0 v2.0.0 Version 2.0.0
#1363 by VachaShah was merged Oct 18, 2021 Loading…
2 of 5 tasks
[Backport-1.x] Upgrade hadoop dependencies for hdfs plugin (#1335) backport PRs or issues specific to backporting features or enhancments CVE Fixes a CVE v1.2.0 Issues related to version 1.2.0
#1369 by VachaShah was merged Oct 15, 2021 Loading…
1 of 5 tasks
Upgrade to log4j 2.15.0 backport 1.x CVE Fixes a CVE pending backport Identifies an issue or PR that still needs to be backported Severity-Critical v1.2.1
#1698 by andrross was merged Dec 10, 2021 Loading…
Upgrade hadoop dependencies for hdfs plugin CVE Fixes a CVE Plugins v1.2.0 Issues related to version 1.2.0 v2.0.0 Version 2.0.0
#1335 by VachaShah was merged Oct 14, 2021 Loading…
2 of 5 tasks
Update FIPS API libraries of Bouncy Castle backport 1.x CVE Fixes a CVE >upgrade Label used when upgrading library dependencies (e.g., Lucene) v1.3.0 v2.0.0 Version 2.0.0
#1853 by tlfeng was merged Jan 6, 2022 Loading…
2 of 5 tasks
[Backport 1.2] Upgrading Netty to 4.1.72-Final backport PRs or issues specific to backporting features or enhancments backport 1.2 CVE Fixes a CVE >upgrade Label used when upgrading library dependencies (e.g., Lucene) v1.2.4
#1890 by saratvemulapalli was merged Jan 12, 2022 Loading…
1 of 5 tasks
[1.2] Update FIPS API libraries of Bouncy Castle (#1853) backport PRs or issues specific to backporting features or enhancments CVE Fixes a CVE >upgrade Label used when upgrading library dependencies (e.g., Lucene) v1.2.4
#1888 by tlfeng was merged Jan 13, 2022 Loading…
2 of 5 tasks
[Backport 1.2] Upgrading bouncycastle to 1.70 (#1832) backport PRs or issues specific to backporting features or enhancments CVE Fixes a CVE >upgrade Label used when upgrading library dependencies (e.g., Lucene) v1.2.4
#1889 by saratvemulapalli was merged Jan 12, 2022 Loading…
1 of 5 tasks
[1.x] Update FIPS API libraries of Bouncy Castle (#1853) backport PRs or issues specific to backporting features or enhancments CVE Fixes a CVE >upgrade Label used when upgrading library dependencies (e.g., Lucene) v1.3.0
#1886 by tlfeng was merged Jan 12, 2022 Loading…
2 of 5 tasks
[1.x] Update protobuf-java to 3.19.3 (#1945) backport PRs or issues specific to backporting features or enhancments CVE Fixes a CVE >upgrade Label used when upgrading library dependencies (e.g., Lucene) v1.3.0
#1949 by tlfeng was merged Jan 21, 2022 Loading…
2 of 5 tasks
Update protobuf-java to 3.19.3 backport 1.x CVE Fixes a CVE >upgrade Label used when upgrading library dependencies (e.g., Lucene) v1.3.0 v2.0.0 Version 2.0.0
#1945 by tlfeng was merged Jan 20, 2022 Loading…
2 of 5 tasks
Upgrading Shadow plugin to 7.1.2 >breaking Identifies a breaking change. CVE Fixes a CVE >upgrade Label used when upgrading library dependencies (e.g., Lucene) v2.0.0 Version 2.0.0
#2033 by saratvemulapalli was merged Feb 2, 2022 Loading…
1 of 5 tasks
Upgrading Jackson-Databind version backport 1.x CVE Fixes a CVE pending backport Identifies an issue or PR that still needs to be backported >upgrade Label used when upgrading library dependencies (e.g., Lucene) v1.3.0 v2.0.0 Version 2.0.0
#1982 by Rishikesh1159 was merged Jan 27, 2022 Loading…
5 tasks
[Backport 1.x] Upgrading Shadow plugin to 7.1.2 backport PRs or issues specific to backporting features or enhancments CVE Fixes a CVE >upgrade Label used when upgrading library dependencies (e.g., Lucene) v1.3.0
#2037 by github-actions bot was merged Feb 2, 2022 Loading…
[CVE] Update snakeyaml dependency backport 1.x backport 2.x Backport to 2.x branch CVE Fixes a CVE dependencies Pull requests that update a dependency file >upgrade Label used when upgrading library dependencies (e.g., Lucene) v3.0.0 Issues and PRs related to version 3.0.0
#4341 by adnapibar was merged Aug 30, 2022 Loading…
2 of 6 tasks
[Backport 1.x] Bump commons-configuration2 from 2.7 to 2.8.0 in /plugins/repository-hdfs backport PRs or issues specific to backporting features or enhancments CVE Fixes a CVE dependencies Pull requests that update a dependency file >upgrade Label used when upgrading library dependencies (e.g., Lucene)
#4645 by opensearch-trigger-bot bot was merged Sep 30, 2022 Loading…
[Backport 1.3] Bump commons-configuration2 from 2.7 to 2.8.0 in /plugins/repository-hdfs CVE Fixes a CVE dependencies Pull requests that update a dependency file >upgrade Label used when upgrading library dependencies (e.g., Lucene) v1.3.0
#4646 by opensearch-trigger-bot bot was merged Sep 30, 2022 Loading…
[2.x] Bump jettison version from 1.4.1 to 1.5.1 CVE Fixes a CVE dependencies Pull requests that update a dependency file >upgrade Label used when upgrading library dependencies (e.g., Lucene)
#4717 by Rishikesh1159 was merged Oct 10, 2022 Loading…
6 tasks
ProTip! Add no:assignee to see everything that’s not assigned.