Skip to content

Conversation

iSnow
Copy link
Collaborator

@iSnow iSnow commented Mar 4, 2025

Updated dependencies, excluded some transitive dependencies with security issues

Overview

Hi @pdelboca, @roll and @rufuspollock. I updated a couple of dependencies as part of the yearly grooming, and also added exclusions for some transitive dependencies which the OWASP plugin flagged as security issues. Also removed one report that was no longer functional since github changed their infrastructure.

I still need the library for my work, so please merge this and create a new release. After that, I'd look at the datapackage-java lib to do the same.

It also seems I lost commit rights, probably due to lack of activity. This is OK if someone else takes this over, but I would still be happy to be reinstated to be able to do tasks like updating depedencies once in a while

Cheers


Please preserve this line to notify @iSnow (lead of this repository)

@pdelboca pdelboca merged commit ac511e2 into frictionlessdata:main Mar 4, 2025
1 check passed
@pdelboca
Copy link

pdelboca commented Mar 4, 2025

Thanks @iSnow ! You should have permissions now!

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
None yet
Projects
None yet
Development

Successfully merging this pull request may close these issues.

3 participants