Safety vulnerability ID: 70740
The information on this page was manually curated by our Cybersecurity Intelligence Team.
Spark-on-k8s version 0.5.1 upgrades its Gunicorn dependency to address security concerns related to CVE-2024-1135.
Latest version: 0.10.1
A Python package to submit and manage Apache Spark applications on Kubernetes.
What's Changed
* fix(webserver): fix the websocket URL by hussein-awala in https://github.com/hussein-awala/spark-on-k8s/pull/36
* security: bump aiohttp to avoid CVE-2024-27306 by hussein-awala in https://github.com/hussein-awala/spark-on-k8s/pull/37
* security: bump apache-airflow to avoid CVE-2024-31869 by hussein-awala in https://github.com/hussein-awala/spark-on-k8s/pull/38
* security: bump gunicorn to avoid CVE-2024-1135 by hussein-awala in https://github.com/hussein-awala/spark-on-k8s/pull/39
**Full Changelog**: https://github.com/hussein-awala/spark-on-k8s/compare/0.5.0...0.5.1
Scan your Python project for dependency vulnerabilities in two minutes
Scan your application