web3j icon indicating copy to clipboard operation
web3j copied to clipboard

Outdated okhttp dependency has several security vulnerabilities

Open gtoison opened this issue 2 years ago • 0 comments

The okhttp and logging-interceptor dependencies (along with their own transitive dependencies) have a bunch of vulnerabilities: https://github.com/square/okhttp/issues/6738 https://github.com/square/okio/pull/1280 https://blog.jetbrains.com/blog/2022/02/08/jetbrains-security-bulletin-q4-2021/

I'm not sure if these vulnerabilities are an actual issue for web3j but they have been addressed already so upgrading isn't a bad idea

gtoison avatar Nov 07 '23 13:11 gtoison