Skip to content

Conversation

@labkey-susanh
Copy link
Contributor

Rationale

Turns out the latest version of the postgres driver has some significant performance issues, so instead of updating, we'll suppress CVE-2025-49146 since we are not at risk from it

Related Pull Requests

Changes

  • Add suppression

Copy link
Contributor

@labkey-jeckels labkey-jeckels left a comment

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

A comment here seems like a helpful complement to the note in the doc

@labkey-susanh labkey-susanh merged commit 53cb77f into release25.3-SNAPSHOT Jun 13, 2025
9 checks passed
@labkey-susanh labkey-susanh deleted the 25.3_fb_suppressCVE branch June 13, 2025 22:56
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

3 participants