Skip to content

Significant number of critical vulnerabilities reported in dependencies #273

@slagelwa

Description

@slagelwa

Running trivy against version 0.9.1 reports 25 critical vulnerabilities in dependent libraries used by bpipe.

For example:

Would it be possible to update com.fasterxml.jackson.core:jackson-databind and org.apache.tika:tika-core?

Metadata

Metadata

Assignees

No one assigned

    Labels

    No labels
    No labels

    Projects

    No projects

    Milestone

    No milestone

    Relationships

    None yet

    Development

    No branches or pull requests

    Issue actions