Skip to content

Conversation

allenjhan
Copy link

There is currently a vulnerability in snakeYaml version 1.26.

Details can be found here:
https://www.mend.io/vulnerability-database/CVE-2022-38750

I would like to update the snakeYaml dependency to 1.31, which fixes this error.

Is there anything else I should do, like bump the version to 0.4.3 so that a new tag can be created?

@allenjhan
Copy link
Author

Unit tests pass when I run sbt test on my machine.

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

1 participant