Skip to content

Security: Upgrade Scriban from 6.2.0 to address known vulnerabilities #352

Description

@dnyw4l3n13

Summary

Package Scriban 6.2.0 has multiple known vulnerabilities. Currently suppressed in src/BuildBot/BuildBot.csproj pending upgrade.

CVEs to address

Action required

Upgrade Scriban to a version that resolves all listed advisories and remove the suppression entries.

Activity

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Metadata

Metadata

Assignees

Labels

AI-WorkWork for an AI AgentBlockedBlocked by a dependency or external factorSecuritySecurity issue, e.g. use of insecure packages, or security fix

Type

No type

Projects

No projects

    Milestone

    No milestone

    Relationships

    None yet

    Development

    No branches or pull requests

    Issue actions