neo4j-gremlin plugin support

Hi team,

I'm currently using tinkerpop-server 3.6.4 docker image with the neo4j-gremlin plugin for backend (https://tinkerpop.apache.org/docs/current/reference/#neo4j-gremlin). I Recently grype scanned the image and I'm seeing lots of vulnerabilities. Vulnerabilities are introduced only when the neo4j-gremlin plugin is installed. Is there any way to update some of these vulnerable dependencies? Are you guys maintaining the plugin? https://mvnrepository.com/artifact/org.apache.tinkerpop/neo4j-gremlin/3.6.4

Grype scan results attached.

Thanks.
image.png
Was this page helpful?