uber-go / tally

A Go metrics interface with fast buffered metrics and third party reporters
MIT License
850 stars 116 forks source link

Vendored Thrift v0.10.0 has security vulnerabilities #182

Open alexshtin opened 2 years ago

alexshtin commented 2 years ago

We are using tally and our security scanner open this issue: https://github.com/temporalio/temporal/issues/3370.

I understand that it was vendored in #104 for a reason, but I believe it is time to upgrade it.

mindaugasrukas commented 1 year ago

Bump.

georgi-lozev commented 1 year ago

Any update on this one ?

nweisenauer-sap commented 12 months ago

Bump