Hi,

Thank you for letting us know. I'll upgrade it on 4.0.2 soon (will be
released this weekend).

Thanks,
Takeshi KOMIYA

2021年5月12日(水) 22:29 Ben Hourahine <bhourah...@gmail.com>:
>
> Hi,
> Thanks for this excellent tool!
>
> We use it for various things in a quantum chemistry tool-chain, but have 
> recently received a warning from github's dependabot scanning about one of 
> the packages upstream from you:  underscore.js has a security announcement ( 
> CVE-2021-23358 ) for arbitrary code execution. Unfortunately this is fixed in 
> underscore 1.12.1, but Sphinx-4.0.1 is still on 1.12.0.
>
> Regards
> Ben
>
>
> --
> You received this message because you are subscribed to the Google Groups 
> "sphinx-users" group.
> To unsubscribe from this group and stop receiving emails from it, send an 
> email to sphinx-users+unsubscr...@googlegroups.com.
> To view this discussion on the web visit 
> https://groups.google.com/d/msgid/sphinx-users/8d539903-4300-4162-afc6-c08a8e741d19n%40googlegroups.com.

-- 
You received this message because you are subscribed to the Google Groups 
"sphinx-users" group.
To unsubscribe from this group and stop receiving emails from it, send an email 
to sphinx-users+unsubscr...@googlegroups.com.
To view this discussion on the web visit 
https://groups.google.com/d/msgid/sphinx-users/CAFmkQAMXPJ2j8R46dfK846CiUYBW3nYw83R8mJDn0MMOex4P8A%40mail.gmail.com.

Reply via email to