Skip to content

CVEs in timezonemap package #76

@MichaelsJP

Description

@MichaelsJP

We use the https://github.com/dustin-johnson/timezonemap package. It is long abandoned and slowly picking up vulnerabilities. Either we find a replacement or fork and upgrade the relevant packages ourselves.

Doing PRs to the original repo seems not reasonable due to the devs' inactivity.

Vulnerabilities can be seen here: https://mvnrepository.com/artifact/us.dustinj.timezonemap/timezonemap/4.5

Metadata

Metadata

Assignees

Labels

No labels
No labels

Type

No type

Projects

No projects

Milestone

No milestone

Relationships

None yet

Development

No branches or pull requests

Issue actions