7.5
CVSS V3
Status
Impact
This relates to json-smart v1.3.2 included by the shaded JAR hadoop-client-runtime-3.3.4.jar. There are no newer versions of this shaded JAR available to fix the vulnerability. This requires upstream maintainers to implement a fix.
Status