Skip to content

Commit

Permalink
Suppress CVE-2023-2976 (#598)
Browse files Browse the repository at this point in the history
  • Loading branch information
Joan Viladrosa authored Jul 12, 2023
1 parent 82fe47b commit 1600c14
Showing 1 changed file with 8 additions and 0 deletions.
8 changes: 8 additions & 0 deletions suppressions.xml
Original file line number Diff line number Diff line change
Expand Up @@ -59,4 +59,12 @@
<packageUrl regex="true">^pkg:maven/io\.micrometer\.prometheus/prometheus\-rsocket\-client@.*$</packageUrl>
<cve>CVE-2019-3826</cve>
</suppress>
<suppress until="2023-07-28Z">
<notes><![CDATA[
file name: guava-31.1-jre.jar
Reverted in https://github.com/openrewrite/rewrite-python/commit/f487df7dabb8588ae2edb17e31ff7b8ba3ffc133 because Guava 32 introduces gradle module metadata which causes downstream breakage in build plugins.
]]></notes>
<packageUrl regex="true">^pkg:maven/com\.google\.guava/[email protected]$</packageUrl>
<cve>CVE-2023-2976</cve>
</suppress>
</suppressions>

0 comments on commit 1600c14

Please sign in to comment.