swanandx opened a new issue, #2439:
URL: https://github.com/apache/iceberg-rust/issues/2439

   jsonwebtoken < v10.3.0 have a security vuln of Medium severity 
[CVE-2026-25537](https://github.com/advisories/GHSA-h395-gr6q-cpjc) 
   
   It is transitive dependency of opendal 55. We migrated to opendal 56 in 
#2401 
   
   It would be nice to have a bugfix release with those changes ( and possibly 
other RUSTSEC fixes? )
   
   
   thanks!


-- 
This is an automated message from the Apache Git Service.
To respond to the message, please log on to GitHub and use the
URL above to go to the specific comment.

To unsubscribe, e-mail: [email protected]

For queries about this service, please contact Infrastructure at:
[email protected]


---------------------------------------------------------------------
To unsubscribe, e-mail: [email protected]
For additional commands, e-mail: [email protected]

Reply via email to