Skip to content

Conversation

@octo-sts
Copy link
Contributor

@octo-sts octo-sts bot commented Jan 2, 2026

spark-4.1/4.1.0-r0: fix GHSA-qh8g-58pp-2wxh

Advisory data: https://github.com/wolfi-dev/advisories/blob/main/spark-4.1.advisories.yaml


"Breadcrumbs" for this automated service

Inspected git repositories: https://github.com/apache/spark@v4.1.0

@octo-sts octo-sts bot added automated pr request-cve-remediation maven/pombump GHSA-qh8g-58pp-2wxh p:spark-4.1 bincapz/blocking Bincapz (aka malcontent) scan results detected CRITICALs on the packages. labels Jan 2, 2026
@antitree antitree added the malcontent/reviewed The malcontent findings in this PR have been manually reviewed by security. label Jan 2, 2026
…fca42a9b8f2

Signed-off-by: Ben Tasker <ben.tasker@chainguard.dev>
@bentasker bentasker requested a review from a team January 2, 2026 16:27
@bentasker bentasker self-assigned this Jan 2, 2026
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

automated pr bincapz/blocking Bincapz (aka malcontent) scan results detected CRITICALs on the packages. GHSA-qh8g-58pp-2wxh malcontent/reviewed The malcontent findings in this PR have been manually reviewed by security. maven/pombump p:spark-4.1 request-cve-remediation

Projects

None yet

Development

Successfully merging this pull request may close these issues.

3 participants