Nexus Lifecycle found Security vulnerabilities in Allure Report #2620
-
Our company is trying to integrate Allure Report extension to Azur Devops. We scanned it with Nexus Lifecycle and identified 3 Level 9 vulnerabilities in allure-commandline: 2.20.1, mockery : 1.7.0 and mockery: 2.1.0: Scanning report: would it be possible to fix security vulnerabilities and release a new version? |
Beta Was this translation helpful? Give feedback.
Replies: 3 comments 1 reply
-
@abulat, we're looking into the issue. Stay tuned for the updates |
Beta Was this translation helpful? Give feedback.
-
Most vulnerabilities were solved. The latest version ( |
Beta Was this translation helpful? Give feedback.
-
I am confirming that mentioned vulnerabilities disappear in a new version of extension (1.4.2). Thank you very much for a very quick reaction. |
Beta Was this translation helpful? Give feedback.
Most vulnerabilities were solved. The latest version (
1.4.2
) includes the required changes. Could you please check the fix?