Thanks to visit codestin.com
Credit goes to github.com

Skip to content

Conversation

@mildaniel
Copy link
Contributor

What type of PR is this?

(REQUIRED)

  • bug
  • cleanup
  • documentation
  • feature

What this PR does / why we need it:

Version bump yaml.v2 as < 2.2.8 has a security vulnerability.

Which issue(s) this PR fixes:

#1322

Release Notes

(REQUIRED)

Bump yaml.v2 version to 2.2.8

@mildaniel mildaniel requested a review from a team as a code owner January 13, 2022 17:51
rliebz
rliebz previously approved these changes Jan 21, 2022
@gafinan
Copy link

gafinan commented Jan 22, 2022

#<"Approved">

@rliebz rliebz merged commit 175bb87 into urfave:master Jan 25, 2022
@mildaniel mildaniel deleted the bump-yamlv2-version branch January 25, 2022 17:02
@asmaloney
Copy link

Any way we can get a 2.3.1 release with this in it?

Tired of dependabot yelling at me about it 😄

@asahasrabuddhe
Copy link
Member

@asmaloney I will try to make a release this weekend!

@asmaloney
Copy link

Amazing - thank you!

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

5 participants