Skip to content

Transitive Vulnerability in fastexcel 0.19.0 #539

@dragonfly8677

Description

@dragonfly8677

When using the fastexcel-reader dependency in my pom.xml, version 0.19.0, I'm getting the below warning from IntelliJ:

Provides transitive vulnerable dependency maven:org.apache.commons:commons-lang3:3.17.0 CVE-2025-48924 5.3 Insufficient Information

I assume there's an outdated dependency in fastexcel-reader that needs updating.

Metadata

Metadata

Assignees

No one assigned

    Labels

    No labels
    No labels

    Type

    No type

    Projects

    No projects

    Milestone

    No milestone

    Relationships

    None yet

    Development

    No branches or pull requests

    Issue actions