cognitedata / cdf-sdk-java

Java SDK for Cognite Data Fusion
Apache License 2.0
4 stars 8 forks source link

Vulnerabilities in gRPC libs #327

Closed aapugu closed 1 month ago

aapugu commented 1 year ago

Hello everyone, two of the gRPC libraries used in the project have a known vulnerability (https://web.nvd.nist.gov/view/vuln/detail?vulnId=CVE-2023-32731): grpc-core@1.53.0 and grpc-protobuf@1.53.0

The newest version 1.56.0 should fix this. Is there a chance to update the dependencies?

Thanks, Florian