joblib / joblib

Computing with Python functions.
http://joblib.readthedocs.org
BSD 3-Clause "New" or "Revised" License
3.73k stars 412 forks source link

Veracode vulnerability for joblib #1596

Closed Sanatmpa closed 1 week ago

Sanatmpa commented 1 week ago

Hi Team,

We use joblib in one of our AI project and when we run the veracode scans, it is showing high vulnerability for veracode even in the latest version. Is there any way that we can fix this in the upcoming version?

The vulnerability details is as follows,

image

image

thisiswhereitype commented 1 week ago

CVE-2024-34997 is discussed in #1588

Sanatmpa commented 1 week ago

Thank you and we can close this issue if its a duplicate.