Skip Menu |

This queue is for tickets about the Dist-Zilla-Plugin-TravisCI CPAN distribution.

Report information
The Basics
Id: 103034
Status: resolved
Priority: 0/
Queue: Dist-Zilla-Plugin-TravisCI

People
Owner: Nobody in particular
Requestors: ether [...] cpan.org
Cc:
AdminCc:

Bug Information
Severity: (no value)
Broken in: 0.008
Fixed in: 0.010



Subject: Uses File::Slurp, known to be buggy and vulnerable
e.g. look at https://rt.cpan.org/Ticket/Display.html?id=83126 and be dismayed File::Slurp::Tiny and Path::Tiny are both excellent alternatives. See also http://shadow.cat/blog/matt-s-trout/mstpan-5/

It doesn't appear to have been using File::Slurp at the time this ticket was filed, but it still had the residual dependency.

 

Actual File::Slurp was removed in 0.003, but the dependency is now gone as of 0.010

 

Marking "Fixed in 0.010" because it covers the widest sense of "fixed"