https://bugzilla.redhat.com/show_bug.cgi?id=2162694 --- Comment #9 from Lumír Balhar <lbalhar@xxxxxxxxxx> --- There is a new release 0.5.1 where the bundled version of moment js is upgraded so the downstream CVE fix is no longer needed. I'd say that this is ready or at least I'm not aware of any remaining issues. Spec URL: https://lbalhar.fedorapeople.org/python-nbclassic.spec SRPM URL: https://lbalhar.fedorapeople.org/python-nbclassic-0.5.1-1.fc37.src.rpm -- You are receiving this mail because: You are always notified about changes to this product and component You are on the CC list for the bug. https://bugzilla.redhat.com/show_bug.cgi?id=2162694 _______________________________________________ package-review mailing list -- package-review@xxxxxxxxxxxxxxxxxxxxxxx To unsubscribe send an email to package-review-leave@xxxxxxxxxxxxxxxxxxxxxxx Fedora Code of Conduct: https://docs.fedoraproject.org/en-US/project/code-of-conduct/ List Guidelines: https://fedoraproject.org/wiki/Mailing_list_guidelines List Archives: https://lists.fedoraproject.org/archives/list/package-review@xxxxxxxxxxxxxxxxxxxxxxx Do not reply to spam, report it: https://pagure.io/fedora-infrastructure/new_issue