commandline icon indicating copy to clipboard operation
commandline copied to clipboard

Version 2.9.1 is reported as vulnerable

Open NinjaCross opened this issue 1 year ago • 7 comments

Describe the bug JetBrains Rider signal the 2.9.1 version as vulnerable. It doesn't provide details on the motivation. This is also mentioned here: https://github.com/jeremylong/DependencyCheck/issues/6048 https://github.com/jeremylong/DependencyCheck/issues/6088

Unfortunately some of the projects/customers I'm working on/with refuse to use libraries with known vulnerabilities. Is there a mitigation ?

Many thanks in advance for any suggestion.

To Reproduce Just add the NuGet package to any project in Rider, and the warning will appear

Expected behavior No vulnerabilities signaled

Screenshots image

NinjaCross avatar Nov 28 '24 08:11 NinjaCross