JetBrains / lets-plot-kotlin

Grammar of Graphics for Kotlin
https://lets-plot.org/kotlin/
MIT License
422 stars 36 forks source link

Vulnerability in lets-plot-batik:2.5.0 #140

Closed ubertrombone closed 1 year ago

ubertrombone commented 1 year ago

IntelliJ is providing the following warning in build.gradle.kts: "Provides transitive vulnerable dependency org.apache.xmlgraphics:batik-bridge:1.15".

The issue links here: https://github.com/advisories/GHSA-r29w-r9ph-vm76

alshan commented 1 year ago

Related: https://github.com/JetBrains/lets-plot/issues/624

alshan commented 1 year ago

Fixed in v4.2.0