Changelog for HDFS 3 Sink Connector for Confluent Platform

Version 3.0.4

  • CC-37328: Bumped org.apache.orc:orc-core:nohive to 2.2.1 to resolve CVE-2022-3171, CVE-2022-3509, CVE-2022-3510 and CVE-2024-7254

Version 3.0.3

  • CC-37328: Excluded vulnerable version of com.google.protobuf:protobuf-java to resolve CVE-2022-3171, CVE-2022-3509, CVE-2022-3510 and CVE-2024-7254

  • CC-36845: Bumped org.apache.zookeeper:zookeeper to 3.9.4 to resolve CVE-2025-58457

Version 3.0.2

  • CC-36915: Bumped io.grpc:grpc-netty-shaded to 1.75.0 to resolve CVE-2025-55163

Version 3.0.1

  • CC-37262: Bumped netty version to 4.1.128.Final to resolve CVE-2025-59419

  • CC-36349: Bumped org.bouncycastle:bcpkix-jdk18on to 1.79 to resolve CVE-2025-8916

  • CC-35443: Bumped org.apache.commons:commons-lang to 3.18.0 to resolve CVE-2025-48924

  • CC-35371: Bumped com.nimbusds:nimbus-jose-jwt to 10.0.2 to resolve CVE-2025-53864

Version 3.0.0

  • CC-36685: Bumped all springframework dependencies to 6.2.11 to resolve CVE-2025-41249.

  • CC-36348: Bumped all springframework dependencies to 6.2.11 to resolve CVE-2024-38820.

  • CC-36347: Bumped all springframework dependencies to 6.2.11 to resolve CVE-2025-22233.

  • Upgraded source and target JDK versions to 17