spreadsheetlab / XLParser

A C# parser for Microsoft Excel formulas with a 99.9% compatibility rate
Other
407 stars 91 forks source link

Snyk security check problem due to license #186

Open kwils1997 opened 4 months ago

kwils1997 commented 4 months ago

Hello,

My company uses a company called "Snyk" to do security audits on our software. It scans for vulnerable dependencies, problematic code, licensing issues, etc. It is showing a "medium level security issue" due to the license XLParser uses:

image

I'm not sure why it's giving a warning about the MPL-2.0 license, nor do I know how to fix it. I just thought I would bring it to your attention in case you wanted to fix it. Might be worth looking into.

Cheers!

kwils1997 commented 4 months ago

NOTE:

The "CWE-926" link at the top goes to: https://cwe.mitre.org/data/definitions/926.html

The "CVE-2024-27086" link at the top goes to: https://cve.mitre.org/cgi-bin/cvename.cgi?name=2024-27086