Replies: 1 comment
-
Hello guys, Sorry, we want to support ShardingSphere UI project, but can not spare much effort on it. Plus, it looks like this UI project trouble users a lot due to such vulnerability issues. Hence, we decided to stop running UI project.
We still welcome anyone who would like to restart ShardingSphere UI. Please ping us here if you have a plan. ;-) Best wishes, |
Beta Was this translation helpful? Give feedback.
0 replies
Sign up for free
to join this conversation on GitHub.
Already have an account?
Sign in to comment
-
Please note that the ShardingSphere-UI is no longer supported by the community.
The deserialization of Untrusted Data vulnerability of Apache ShardingSphere-UI allowing an attacker to inject outer link resources has been detected by the community and PMC, and discussed in the mailing list:
https://seclists.org/oss-sec/2021/q4/105
Mitigation:
This issue is related to ShardingSphere-UI project. If you do not deploy UI project, an upgrade is not required.
Conversely you should consider an upgrade if you have deployed the previous UI project.
Beta Was this translation helpful? Give feedback.
All reactions