How to resolve the TestNG security vulnerability

161 views Asked by At

How to resolve TestNG Vulnerability?

I want to use TestNG in my automatiuon framework but due TestNG active vulnerabilities not able to use it duer to security issue

1

There are 1 answers

0
Alexey R. On

As fer as I can see from latest TestNG artifact there is the only vulnerability in one of the dependencies (org.yaml:snakeyaml:1.33).

enter image description here

However org.yaml:snakeyaml:2.0 has that vulnerability fixed.

So your option would be to add that last version of snakeyaml to your root pom so that maven will take it in priority and hope that it is backward compatible with 1.33