Closed AiyionPrime closed 2 years ago
GitHub will have notified you earlier, guava 26 has a security vulnerability.
The dependabot sucks though, and recommends to bump to the still vulnerable version 29.0-jre. Please merge this instead of #60.
29.0-jre
patched versions: 30.0-jre
https://github.com/advisories/GHSA-5mg8-w23w-74h3
@dkiechle: This change does need a new release as soon as possible.
Not sure who is currently working at the SRA, but I think @opusz might know who moderates this codebase nowadays.
GitHub will have notified you earlier, guava 26 has a security vulnerability.
The dependabot sucks though, and recommends to bump to the still vulnerable version
29.0-jre
. Please merge this instead of #60.https://github.com/advisories/GHSA-5mg8-w23w-74h3