Vulnerable regex detected by Snyk. Please fix or avoid regex
wannfq opened this issue · 3 comments
wannfq commented
configobj/src/configobj/validate.py
Line 534 in e2ba445
wannfq commented
IloBe commented
Additional info:
- https://quay.io/repository/eclipse/che-sidecar-go/manifest/sha256:2243f389534abc38938f454e01b6653b88ff19048ec4c3ecc0a66e652cb017d0?tab=vulnerabilities
- with pip-audit lib:
configobj 5.0.8 GHSA-c33w-24p9-8m24 Failed to fix configobj (5.0.8): failed to fix dependency configobj (5.0.8), unable to find fix version for vulnerability GHSA-c33w-24p9-8m24
thebaptiste commented