Skip to content

Upgrade Protobuf Java to remediate CVEs#10098

Open
shub-est wants to merge 1 commit intoapache:developfrom
Nordix:fix/protobuf_upgrade
Open

Upgrade Protobuf Java to remediate CVEs#10098
shub-est wants to merge 1 commit intoapache:developfrom
Nordix:fix/protobuf_upgrade

Conversation

@shub-est
Copy link
Contributor

@shub-est shub-est commented Feb 11, 2026

Which Issue(s) This PR Fixes

Fixes #10097

Brief Description

Upgraded Protobuf Java to 3.25.8 to remediate CVE-2022-3509, CVE-2022-3510 and CVE-2024-7254

How Did You Test This Change?

Local build

Signed-off-by: Shubham Kalloli <shubham.kalloli@est.tech>
@codecov-commenter
Copy link

Codecov Report

✅ All modified and coverable lines are covered by tests.
✅ Project coverage is 48.82%. Comparing base (76cd389) to head (e643720).

Additional details and impacted files
@@              Coverage Diff              @@
##             develop   #10098      +/-   ##
=============================================
- Coverage      48.89%   48.82%   -0.07%     
+ Complexity     13366    13339      -27     
=============================================
  Files           1373     1373              
  Lines          99868    99868              
  Branches       12903    12903              
=============================================
- Hits           48829    48760      -69     
- Misses         45119    45170      +51     
- Partials        5920     5938      +18     

☔ View full report in Codecov by Sentry.
📢 Have feedback on the report? Share it here.

🚀 New features to boost your workflow:
  • ❄️ Test Analytics: Detect flaky tests, report on failures, and find test suite problems.

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

[Bug] Upgrade Google Protobuf Java to remediate CVEs

3 participants