Hello,
Sonatype is finding a vulnerability with opentelemetry-javaagent: https://guide.sonatype.com/component/maven/io.opentelemetry.javaagent%3Aopentelemetry-javaagent/2.28.1/vulnerabilities?severities=medium
I don't see a reference to it in existing issues or on the known CVEs page, so perhaps it is a false positive or something?
Are you aware of this supposed vunerability and could you share any other information you might have on it? If it is a true vulnerability or not? If it is, is there a planned fix? If not, could you explain why?
Thank you!
Hello,
Sonatype is finding a vulnerability with opentelemetry-javaagent: https://guide.sonatype.com/component/maven/io.opentelemetry.javaagent%3Aopentelemetry-javaagent/2.28.1/vulnerabilities?severities=medium
I don't see a reference to it in existing issues or on the known CVEs page, so perhaps it is a false positive or something?
Are you aware of this supposed vunerability and could you share any other information you might have on it? If it is a true vulnerability or not? If it is, is there a planned fix? If not, could you explain why?
Thank you!