Skip to content

Commit b83d06c

Browse files
committed
vulnerability scan: suppress CVE-2024-22871
I don't think this one should be popping up, but not applicable anyway because clj-yaml does not depend on a specific version of Clojure. Closes #161
1 parent 062752d commit b83d06c

File tree

1 file changed

+7
-0
lines changed

1 file changed

+7
-0
lines changed

nvd_check_helper_project/suppressions.xml

Lines changed: 7 additions & 0 deletions
Original file line numberDiff line numberDiff line change
@@ -34,4 +34,11 @@
3434
]]> </notes>
3535
<cve>CVE-2017-20189</cve>
3636
</suppress>
37+
<suppress>
38+
<notes><![CDATA[
39+
This CVE is described as: An issue in Clojure versions 1.20 to 1.12.0-alpha5 allows an attacker to cause a denial of service (DoS) via the clojure.core$partial$fn__5920 function.
40+
False positive; clj-yaml does not depend on a specific version of Clojure.
41+
]]></notes>
42+
<cve>CVE-2024-22871</cve>
43+
</suppress>
3744
</suppressions>

0 commit comments

Comments
 (0)