Skip to content

Conversation

@DarshitChanpura
Copy link
Member

Unblocks 3.0 build by addressing CVE-2024-47554

opensearch-project/opensearch-build#5595 (comment)

Check List

  • New functionality includes testing
  • New functionality has been documented
  • New Roles/Permissions have a corresponding security dashboards plugin PR
  • API changes companion pull request created
  • Commits are signed per the DCO using --signoff

By submitting this pull request, I confirm that my contribution is made under the terms of the Apache 2.0 license.
For more information on following Developer Certificate of Origin and signing off your commits, please check here.

Signed-off-by: Darshit Chanpura <dchanp@amazon.com>
Signed-off-by: Darshit Chanpura <dchanp@amazon.com>
@DarshitChanpura DarshitChanpura added the backport 3.2 Backports to 3.2 branch label Aug 12, 2025
@codecov
Copy link

codecov bot commented Aug 12, 2025

Codecov Report

✅ All modified and coverable lines are covered by tests.
✅ Project coverage is 72.96%. Comparing base (0f2fca9) to head (4fd4173).
⚠️ Report is 1 commits behind head on main.

Additional details and impacted files

Impacted file tree graph

@@            Coverage Diff             @@
##             main    #5558      +/-   ##
==========================================
- Coverage   72.97%   72.96%   -0.02%     
==========================================
  Files         405      405              
  Lines       25200    25200              
  Branches     3837     3837              
==========================================
- Hits        18389    18386       -3     
- Misses       4946     4950       +4     
+ Partials     1865     1864       -1     

see 4 files with indirect coverage changes

🚀 New features to boost your workflow:
  • ❄️ Test Analytics: Detect flaky tests, report on failures, and find test suite problems.
  • 📦 JS Bundle Analysis: Save yourself from yourself by tracking and limiting bundle sizes in JS merges.

Signed-off-by: Darshit Chanpura <dchanp@amazon.com>
@DarshitChanpura DarshitChanpura changed the title Remove commons-io maven metadata from being shaded in opensaml jar Remove commons-io and commons-lang3 maven metadata from being shaded in opensaml jar Aug 12, 2025
@cwperks cwperks merged commit 1c88edc into opensearch-project:main Aug 12, 2025
71 of 72 checks passed
opensearch-trigger-bot bot pushed a commit that referenced this pull request Aug 12, 2025
…ded in opensaml jar (#5558)

Signed-off-by: Darshit Chanpura <dchanp@amazon.com>
(cherry picked from commit 1c88edc)
Signed-off-by: github-actions[bot] <github-actions[bot]@users.noreply.github.com>
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

backport 3.2 Backports to 3.2 branch

Projects

None yet

Development

Successfully merging this pull request may close these issues.

3 participants