tabulapdf / tabula-java

Extract tables from PDF files
MIT License
1.77k stars 412 forks source link

Gson vulnerability in tabula-1.0.5 release #539

Open gsonOutdated opened 4 months ago

gsonOutdated commented 4 months ago

While gson version was updated to 2.0.9 to fix the following issue: https://github.com/advisories/GHSA-4jrv-ppp4-jm57 through https://github.com/tabulapdf/tabula-java/commit/ab93da966b42b3384ba69556b491e82a0580bcda the latest release https://github.com/tabulapdf/tabula-java/releases/tag/v1.0.5 still has the vulnerable version.

Would it be ok asking for a new release of tabula-java?

muhammad-asn commented 3 months ago

Any update on this?