This repository has been archived by the owner on Jan 19, 2023. It is now read-only.
Bug: https://ossindex.sonatype.org/vulnerability/CVE-2020-36204 (Incorrect vulnerability details) #314
Labels
bug
Something isn't working
Vulnerability URL
Provide the URL to the vulnerability. For example:
Component URL
Provide the URL to the component. For example:
Description
cargo pants
(which uses this dataset) is outputting the above vulnerability for version 15.1.0 of theim
crate:im
GitHub repo also confirms this: TreeFocus lacks bounds on its Send and Sync traits bodil/im-rs#157 + https://github.com/bodil/im-rs/releases/tag/v15.1.0 (15.1.0 is also the latest release available).I think your dataset should not report 15.1.0 as vulnerable.
Thanks.
PS: FYI, the instructions in your main
README
and your issue template default subject do not match - I am not super sure I named this issue exactly how it should be named. Please let me know if I should fix something.PPS: Going from the vulnerability to the component was surprisingly different without prior knowledge of your system. I hope I figured that out correctly as well.
The text was updated successfully, but these errors were encountered: