assertj-swagger icon indicating copy to clipboard operation
assertj-swagger copied to clipboard

Suppressing the vulnerabilities

Open Rajik opened this issue 6 years ago • 1 comments

Suppressing the vulnerabilities as the fixes are not available without upgrading to swagger core v3.

Rajik avatar Feb 01 '19 12:02 Rajik

I vote 👎 .

I think that CVE-free versions of dependent libraries can be found we some effort. I took just a glance and I see they mostly revolve around jackson libraries. Not much experience with gradle, but if I have some time I'll take a look.

RockyMM avatar Feb 28 '19 17:02 RockyMM