Supply Chain Attack? Unknown Version 0.8.1 in Maven Repository
istvan-derda opened this issue · 1 comments
istvan-derda commented
There is a version 0.8.1 in central.sonatype.com - with no trace of it here in the git repo. No Git tag, no release notes. Without further information, this looks like a supply chain attack to me. Can you say something to this?
Thanks in advance!
e5l commented
Fixed, 0.9.0 is on central