VAPT issue for jackson related dependency
- Dominant language
- Java
- Stars
- 9.7k
- Forks
- 2.4k
- Avg merge
- 3d 9h
- Merged PRs (30d)
- 204
Description
### Search before asking
- [x] I had searched in the [issues](https://github.com/apache/seatunnel/issues?q=is%3Aissue+label%3A%22bug%22) and found no similar issues.
### What happened
Hi team,
We have VAPT issue for jackson dependency. We need confirmation if we upgrade jackson version will it break connector functionality
### SeaTunnel Version
All the version of seatunnel
### SeaTunnel Config
```conf
Nothing
```
### Running Command
```shell
Nothing
```
### Error Exception
```log
Nothing
```
### Zeta or Flink or Spark Version
Nothing
### Java or Scala Version
Java8
### Screenshots
_No response_
### Are you willing to submit PR?
- [ ] Yes I am willing to submit a PR!
### Code of Conduct
- [x] I agree to follow this project's [Code of Conduct](https://www.apache.org/foundation/policies/conduct)
Contributor guide
No contributing guide indexed for this repository
Research direction
No file, test, Jackson version, or vulnerability identifier is named in the issue. Start by locating the Jackson dependency declarations and connector-related compatibility tests, then determine whether an upgrade preserves connector functionality; done means the VAPT concern and compatibility impact are documented with supporting test results.
Written by the indexing model from the issue text.
Assessment
- Tech stack
- java
- Domain
- security
- Issue type
- Bug
- Difficulty
- 4/5
- Estimated time
- 3-5 days
- Activity status
- Stale
- Clarity
- Needs clarification
- Newbie friendliness
- 20/100