Conversation
|
Hi there @sbordet! A community member has suggested an improvement to your security advisory. If approved, this change will affect the global advisory listed at github.com/advisories. It will not affect the version listed in your project repository. This change will be reviewed by our Security Curation Team. If you have thoughts or feedback, please share them in a comment here! If this PR has already been closed, you can start a new community contribution for this advisory |
There was a problem hiding this comment.
🟡 Changes recommended
The proposed fixed versions do not exist in Jetty’s published releases.
Get a fresh assessment by requesting another Copilot review.
Pull request overview
Updates Eclipse Jetty’s affected-version metadata for three legacy release lines.
Changes:
- Replaces
last_affectedboundaries with fixed-version events. - Adds last-known-affected version ranges.
File summaries
| File | Description |
|---|---|
GHSA-7p3p-8qv8-m2vh.json |
Updates affected ranges for Jetty 9.4, 10.0, and 11.0. |
Review details
- Files reviewed: 1/1 changed files
- Comments generated: 0
- Review effort level: Balanced
💡 Add a code-review agent skill or configure MCP servers for context-aware, tailored reviews. Learn more in the docs.
Updates
Comments
wrong change not reflecting values from GHSA-7p3p-8qv8-m2vh