Skip to content

Conversation

@Rajik
Copy link

@Rajik Rajik commented Feb 1, 2019

Suppressing the vulnerabilities as the fixes are not available without upgrading to swagger core v3.

@RockyMM
Copy link

RockyMM commented Feb 28, 2019

I vote 👎 .

I think that CVE-free versions of dependent libraries can be found we some effort. I took just a glance and I see they mostly revolve around jackson libraries. Not much experience with gradle, but if I have some time I'll take a look.

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

2 participants