Skip to content

Clean-Dependency-Project/clean-dependency-project

Folders and files

NameName
Last commit message
Last commit date

Latest commit

Sep 22, 2023
6dcab3d · Sep 22, 2023

History

48 Commits
Sep 20, 2023
Aug 9, 2022
Aug 8, 2022
Aug 8, 2022
Aug 9, 2022
May 9, 2022
Jun 30, 2023
Jun 30, 2023
May 6, 2022
Aug 16, 2022
Sep 22, 2023

Repository files navigation

Clean Dependency Project

What is the Clean Dependency Project?

The Clean Dependency Project is Fannie Mae’s first open source project with a clear vision to provide clean OSS libraries to the products that we care about.

There is an immediate concern with the consumption of OSS libraries that we rely on with no clear upgrade path. The main goal is to clean these dependencies and vulnerabilities with patch management with the most recent versions to push back upstream into our projects as well as the external community.

Some of the projects and dependencies we will be working on cleaning are:

  • Spring Framework
  • Pandas
  • snakeyaml

Versions that need updating:

  • spring-framework : 5.3.x
  • pandas : 1.5.2
  • snakeyaml : 1.33

If you would like to give back to this project, please read our contributing guide and visit our open issues to get started.

About

Provide secure OSS libraries to the products and projects that we care about

Resources

License

Code of conduct

Stars

Watchers

Forks

Releases

No releases published

Packages

No packages published