It is suspected that this package is vulnerable to a security vulnerability due to expanding of malicious entities via dev-perl/XML-Twig. As such we ask maintainers with packages suspected to be vulnerable to verify if the package is (or have been) affected. Please see the information contained in the tracker bug 600818. # grep -Fr 'Twig->new' /var/tmp/portage/dev-perl/Lab-Measurement-3.531.0/work/Lab-Measurement-3.531 /var/tmp/portage/dev-perl/Lab-Measurement-3.531.0/work/Lab-Measurement-3.531/lib/Lab/Data/XMLtree.pm: my $t = XML::Twig->new(
hi, I tested on 9/19/2017 -- developer / # grep -Fr 'use XML::Twig' Lab-Measurement-3.554 developer / # Further upstream removed Lab::Data::XMLtree from package as it is deprecated. Package dev-perl/Lab-Measurement-3.550 is in tree. Seems ready for bump?
No versions of Lab-Measurement in tree mention XML-Tree anymore. Last versions removed 2017-11-29