-
Notifications
You must be signed in to change notification settings - Fork 672
Request for new release to address dependency vulnerabilities fixed in #491 #507
Description
Hello maintainers,
Thank you for your continued work on kafka_exporter. We're using this exporter in production to monitor our Kafka clusters and have greatly appreciated its reliability.
We've identified security vulnerabilities in dependencies present in the current latest release (v1.9.0). I noticed that PR #491 has already addressed these vulnerabilities and has been merged into the main branch.
Given that the last release was approximately a year ago (v1.9.0), would it be possible to cut a new release that includes these security fixes? This would allow users to update their deployments and remediate the identified vulnerabilities without needing to build from source.
We understand that maintaining open source projects requires significant time and effort. If there are any blockers preventing a release, or if there's anything the community can do to help facilitate this, please let us know.
Thank you for considering this request.