druid-0.20.1
·
4172 commits
to master
since this release
Apache Druid 0.20.1 is a bug fix release that addresses CVE-2021-25646: Authenticated users can override system configurations in their requests which allows them to execute arbitrary code.
# Known issues
# Incorrect Druid version in docker-compose.yml
The Druid version is specified as 0.20.0 in the docker-compose.yml
file. We recommend to update the version to 0.20.1 before you run a Druid cluster using docker compose.