From: Mark R. <ma...@la...> - 2019-02-23 07:36:15
|
The examples in the Developer's Guide have a number of dependencies with known security vulnerabilities, specifically: bootstrap opened 9 hours ago by GitHub • src/docs/refdocs/fbdevgd/examples/FBMVCExample/packages.config com.fasterxml.jackson.core:jackson-databind opened on Jan 4 by GitHub • src/docs/refdocs/fbdevgd/examples/fbjavaex/pom.xml The last time this happened (with the Java example), I updated the dependencies in the example and in the documentation, however I wonder if this isn't too much effort for something which is basically just an example. It is possible to disable this vulnerability scan on the repository, which will disable this notification. Any objections if I disable this? Mark -- Mark Rotteveel |