Status
Impact
The dependency responsible for this CVE is a transitive dependency where the version of said dependency is not explicitly defined in the project but rather brought in under the hadoop-client-api jar. This requires upstream maintainers to implement a fix.
Status