Open
Description
- azure-cognitiveservices-speech:
- 1.42.0
- Windows
- 3.11:
Describe the bug
When customer source code was scanned using Azure DevOps Vulnerability Scanner Sonatype azure-cognitiveservices-speech SDK was detected as High Risk.
The issue is probably due to license type and therefore detected as threat. The license is set as "Other/Proprietary," whereas typically, other Azure SDKs have an "MIT License."
References: -
Metadata
Metadata
Assignees
Labels
This issue points to a problem in the data-plane of the library.Workflow: This issue is responsible by Azure service team.This issue requires a change to an existing behavior in the product in order to be resolved.Issues that are reported by GitHub users external to the Azure organization.Workflow: The Azure SDK team believes it to be addressed and ready to close.
Activity