graphviz-java icon indicating copy to clipboard operation
graphviz-java copied to clipboard

Unsafe Dependency Resolution through guru.nidi:code-assert

Open bonndan opened this issue 4 years ago • 1 comments

Hi!

First of all thanks for graphviz-java which works like a charm for my purposes.

My code is inspected by snyk.io and I get the following warning:

Affected module: com.beust:[email protected]

Introduced through: guru.nidi:[email protected]

Exploit maturity: No known exploit

Fixed in: com.beust:[email protected]

Detailed paths Introduced through: guru.nidi:[email protected] › guru.nidi:[email protected] › net.sourceforge.pmd:[email protected] › net.sourceforge.pmd:[email protected] › com.beust:[email protected]

Could you have a look at that?

bonndan avatar Apr 23 '21 07:04 bonndan

@bonndan FYI, I raised #198 for this reason

sirocchj avatar Apr 29 '21 19:04 sirocchj