You signed in with another tab or window. Reload to refresh your session.You signed out in another tab or window. Reload to refresh your session.You switched accounts on another tab or window. Reload to refresh your session.Dismiss alert
I wanted to inquire if there are any plans to update the lz4 version in the lz4-java project. Currently, version 1.8.0 of lz4-java uses lz4 version 1.9.2, which has known vulnerability: https://nvd.nist.gov/vuln/detail/cve-2021-3520
Would it be possible to update the project to use lz4 version 1.9.4 or above to address this concern.
The text was updated successfully, but these errors were encountered:
I wanted to inquire if there are any plans to update the lz4 version in the lz4-java project. Currently, version 1.8.0 of lz4-java uses lz4 version 1.9.2, which has known vulnerability:
https://nvd.nist.gov/vuln/detail/cve-2021-3520
Would it be possible to update the project to use lz4 version 1.9.4 or above to address this concern.
The text was updated successfully, but these errors were encountered: