Thanks to visit codestin.com
Credit goes to github.com

Skip to content

Conversation

@jainrahul0311
Copy link
Contributor

@jainrahul0311 jainrahul0311 commented Nov 20, 2025

Quarkus 3.27.1 is released which fixes a CVE in the Microsoft SQL JDBC driver CVE-2025-59250 as per there Changelog

This PR is to upgrade to Quarkus to 3.27.1 to resolve - GHSA-m494-w24q-6f7w

@jainrahul0311 jainrahul0311 requested a review from a team as a code owner November 20, 2025 06:38
@mabartos
Copy link
Contributor

@jainrahul0311 Thanks for the PR! Looks good to me and I have the same output after executing the ./set-quarkus-version.sh 3.27.1 script.

However, you need to have the commit signed to pass the DCO (the best would be git commit -m "Upgrade to Quarkus 3.27.1" -m "Closes #43643" -s)

@jainrahul0311 jainrahul0311 force-pushed the bump-qurakus-msql-jdbc-vulnerability branch from 907de34 to c125689 Compare November 20, 2025 09:43
@jainrahul0311
Copy link
Contributor Author

Thanks @mabartos , i hope it's better :)

@mabartos
Copy link
Contributor

mabartos commented Nov 20, 2025

@jainrahul0311 Nice! And one last thing - please do not include the merge commit. Use the git rebase. Thanks!

@jainrahul0311 jainrahul0311 force-pushed the bump-qurakus-msql-jdbc-vulnerability branch from 11c8fc3 to 4c77d51 Compare November 20, 2025 10:18
@jainrahul0311 jainrahul0311 requested a review from a team as a code owner November 20, 2025 10:18
@jainrahul0311 jainrahul0311 marked this pull request as draft November 20, 2025 10:27
@jainrahul0311 jainrahul0311 force-pushed the bump-qurakus-msql-jdbc-vulnerability branch from f9deb96 to c125689 Compare November 20, 2025 10:33
@jainrahul0311 jainrahul0311 marked this pull request as ready for review November 20, 2025 10:33
@jainrahul0311 jainrahul0311 force-pushed the bump-qurakus-msql-jdbc-vulnerability branch from c125689 to 7ba93b7 Compare November 20, 2025 10:37
@jainrahul0311
Copy link
Contributor Author

@mabartos Thanks 👍🏼

@vmuzikar vmuzikar requested a review from mabartos November 20, 2025 13:41
@mabartos
Copy link
Contributor

@jainrahul0311 Thanks for the PR!

@mabartos mabartos merged commit 61b1e53 into keycloak:main Nov 20, 2025
138 of 140 checks passed
mabartos pushed a commit to mabartos/keycloak that referenced this pull request Nov 20, 2025
Closes keycloak#43642
Signed-off-by: Rahul Jain <[email protected]>
(cherry picked from commit 61b1e53)
stianst pushed a commit to mabartos/keycloak that referenced this pull request Nov 25, 2025
Closes keycloak#43642
Signed-off-by: Rahul Jain <[email protected]>
(cherry picked from commit 61b1e53)
vmuzikar pushed a commit to mabartos/keycloak that referenced this pull request Nov 26, 2025
Closes keycloak#43643
Signed-off-by: Rahul Jain <[email protected]>
(cherry picked from commit 61b1e53)
stianst pushed a commit that referenced this pull request Nov 26, 2025
Closes #43643

(cherry picked from commit 61b1e53)

Signed-off-by: Rahul Jain <[email protected]>
Co-authored-by: Rahul Jain <[email protected]>
@jainrahul0311
Copy link
Contributor Author

Hey @mabartos
To make this PR part of next release do we need to tag this PR with specific tag like release/XX ?

@vmuzikar
Copy link
Contributor

@jainrahul0311 No need, the PR with the backport to 26.4 was already merged.

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Projects

None yet

Development

Successfully merging this pull request may close these issues.

Upgrade to Quarkus 3.27.1

3 participants