Skip to content

Mitigate security issue 163

Warren Gifford requested to merge olafurpg/jvm-security into main

Created by: olafurpg

Previously, we shelled out to the unzip command-line tool to extract sources from a JVM dependency source jar. Now, we use the Go stdlib zip package instead. For security reasons, we don't extract files

Merge request reports

Loading