← Feed
πŸ’» **Seth Michael Larson: Library dependency version specifiers aren't for fixing vulnerabilities**

Let's say you are the maintainer of a Python library that depends on another Python library like β€œurllib3”. Because you want to make sure users receive a compatible version of urllib3 you add a version specifier that restricts the version to the current β€œmajor” version so users k...

πŸ”— https://sethmlarson.dev/library-version-specifiers-not-for-vulnerabilities?utm_campaign=rss

#tech #news
1 views

Comments (0)