SharpDocx
SharpDocx copied to clipboard
The transitive dependent package System.Text.RegularExpressions 4.3.0 has a vulnerability.
Visual Studio 2022 shows this warning:
I traced the dependency chain and found that the problematic package System.Text.RegularExpressions 4.3.0 is indirectly referenced from SharpDocx. Its dependency chain is as follows:
SharpDocx.2.4.0
=> Microsoft.CodeAnalysis.CSharp.2.10.0
=>Microsoft.CodeAnalysis.Common.2.10.0
=>System.Xml.XDocument.4.3.0
=> System.Xml.ReaderWriter.4.3.0
=> System.Text.RegularExpressions.4.3.0