diff --git a/.github/workflows/ci.py b/.github/workflows/ci.py index 357266214..a936c908d 100644 --- a/.github/workflows/ci.py +++ b/.github/workflows/ci.py @@ -232,6 +232,7 @@ IGNORED_DEPENDENCY_CVES = [ 'CVE-2026-4224', 'CVE-2026-4519', 'CVE-2026-1502', + 'CVE-2026-7210', # DoS in unused XML parser # github.com/nwaples/rardecode/v2 'CVE-2025-11579', # rardecode is version 2.2.1, not vulnerable 'CVE-2026-2673', # openssl fix not released