Closed peichhorn-netgo closed 2 years ago
MetaModel-excel relies on an outdated version of Apache Commons Compress via Apache POI with known security issues.
MetaModel-excel
I can provide a PR that updates Apache POI to 5.2.0 or at least update Apache Commons Compress to 1.21. What do you think is best here?
A PR would be very welcome
As long as we don't break existing functionality (covered by existing tests) I am all for upgrading dependencies.
MetaModel-excel
relies on an outdated version of Apache Commons Compress via Apache POI with known security issues.I can provide a PR that updates Apache POI to 5.2.0 or at least update Apache Commons Compress to 1.21. What do you think is best here?