homeport / dyff

/ˈdʏf/ - diff tool for YAML files, and sometimes JSON
MIT License
1.31k stars 65 forks source link

Ensure build without CVE-2024-24790 #374

Closed deepflame closed 3 months ago

deepflame commented 4 months ago

Thanks for your efforts on dyff!

Currently our CVE-scanner complains about this: https://www.cvedetails.com/cve/CVE-2024-24790/

A new release would be helpful

deepflame commented 3 months ago

Hi everyone, would be nice to have a new build to remove the CVE. Thanks a lot :)

( you don't have to merge this in if you don't want to, a new build would suffice )

HeavyWombat commented 3 months ago

Hi everyone, would be nice to have a new build to remove the CVE. Thanks a lot :)

( you don't have to merge this in if you don't want to, a new build would suffice )

Thanks for the nudge. New build is out. Actually, there is an idea I have to maybe address this better in the future.

deepflame commented 3 months ago

great, thanks!