imageio / imageio-ffmpeg

FFMPEG wrapper for Python
BSD 2-Clause "Simplified" License
237 stars 52 forks source link

imageio-ffmpeg relies on madler-zlib 1.2.11, which has known vulnerabilities #117

Open landon-kanner opened 3 months ago

landon-kanner commented 3 months ago

Running a vulnerability scan on imageio-ffmpeg yields 4 known critical and high vulnerabilities stemming from use of madler-zlib 1.2.11:

CVE-2022-37434 CVE-2023-45853 CVE-2018-25032 SA107600