You signed in with another tab or window. Reload to refresh your session.You signed out in another tab or window. Reload to refresh your session.You switched accounts on another tab or window. Reload to refresh your session.Dismiss alert
Describe the bug
Hi, I just included the version 1.3.0-alpha.2 skrape.it into my project, and IntelliJ reports that the package depends on vulnerable versions of quite a few libraries. When I try version 1.2.2, it's the same. I don't say that users of this library are directly vulnerable, but it's suspicious at least. All the vulnerabilities have quite a high score, so it would make sense just to make 1.2.3 release just with these libs bumped. Thanks for the great project!
Describe the bug
Hi, I just included the version
1.3.0-alpha.2
skrape.it into my project, and IntelliJ reports that the package depends on vulnerable versions of quite a few libraries. When I try version1.2.2
, it's the same. I don't say that users of this library are directly vulnerable, but it's suspicious at least. All the vulnerabilities have quite a high score, so it would make sense just to make1.2.3
release just with these libs bumped. Thanks for the great project!All the vulnerabilities reported by IntelliJ
The text was updated successfully, but these errors were encountered: