Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

Snyk security check problem due to license #186

Open
kwils1997 opened this issue May 15, 2024 · 1 comment
Open

Snyk security check problem due to license #186

kwils1997 opened this issue May 15, 2024 · 1 comment

Comments

@kwils1997
Copy link

Hello,

My company uses a company called "Snyk" to do security audits on our software. It scans for vulnerable dependencies, problematic code, licensing issues, etc. It is showing a "medium level security issue" due to the license XLParser uses:

image

I'm not sure why it's giving a warning about the MPL-2.0 license, nor do I know how to fix it. I just thought I would bring it to your attention in case you wanted to fix it. Might be worth looking into.

Cheers!

@kwils1997
Copy link
Author

NOTE:

The "CWE-926" link at the top goes to:
https://cwe.mitre.org/data/definitions/926.html

The "CVE-2024-27086" link at the top goes to:
https://cve.mitre.org/cgi-bin/cvename.cgi?name=2024-27086

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
None yet
Projects
None yet
Development

No branches or pull requests

1 participant