Skip to content

Conversation

dbwiddis
Copy link
Member

Backports 99f3189 from #19495

Fixes CVE-2025-55163

* Bump io.grpc deps from 1.68.2 to 1.75.0

Signed-off-by: Craig Perkins <[email protected]>

* Add CHANGELOG entry

Signed-off-by: Craig Perkins <[email protected]>

---------

Signed-off-by: Craig Perkins <[email protected]>
(cherry picked from commit 99f3189)
@dbwiddis dbwiddis requested a review from a team as a code owner October 11, 2025 20:15
@dbwiddis dbwiddis changed the title Bump io.grpc deps from 1.68.2 to 1.75.0 (#19495) [2.19] Bump io.grpc deps from 1.68.2 to 1.75.0 (#19495) Oct 11, 2025
Copy link
Contributor

✅ Gradle check result for 7977b39: SUCCESS

Copy link

codecov bot commented Oct 11, 2025

Codecov Report

✅ All modified and coverable lines are covered by tests.
✅ Project coverage is 71.94%. Comparing base (50914fd) to head (def1b79).
⚠️ Report is 2 commits behind head on 2.19.

Additional details and impacted files
@@             Coverage Diff              @@
##               2.19   #19602      +/-   ##
============================================
+ Coverage     71.85%   71.94%   +0.08%     
- Complexity    65896    65972      +76     
============================================
  Files          5341     5341              
  Lines        307273   307273              
  Branches      44845    44845              
============================================
+ Hits         220786   221056     +270     
+ Misses        68003    67801     -202     
+ Partials      18484    18416      -68     

☔ View full report in Codecov by Sentry.
📢 Have feedback on the report? Share it here.

🚀 New features to boost your workflow:
  • ❄️ Test Analytics: Detect flaky tests, report on failures, and find test suite problems.

@dbwiddis dbwiddis added the CVE Fixes a CVE label Oct 11, 2025
Copy link
Member

@sandeshkr419 sandeshkr419 left a comment

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

LGTM! Just a minor comment on changelog entry.

@dbwiddis dbwiddis added the v2.19.4 Issues targeting release v2.19.4 label Oct 12, 2025
Copy link
Contributor

✅ Gradle check result for def1b79: SUCCESS

@andrross andrross merged commit 9057d4c into opensearch-project:2.19 Oct 13, 2025
44 checks passed
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

CVE Fixes a CVE v2.19.4 Issues targeting release v2.19.4

Projects

None yet

Development

Successfully merging this pull request may close these issues.

4 participants