Vulnerability Reports

Provides vulnerability information in relation to Drill.

CVE-2022-42889
This vulnerability does not impact Drill. The commons-text in Drill is only used for the following StringDistanceFunctions that involve classes from a similarity package:
  • cosine_distance
  • fuzzy_score
  • hamming_distance
  • jaccard_distance
  • jaro_distance
  • levenshtein_distance
  • longest_common_substring_distance

Drill does not use StringSubstitutor, which is what produces the vulnerability.