i am running azure pipline with Mend Bolt task to detect old libraries, and i got:
Notice for System.Text.RegularExpressions the existing version is 4.3.1 and the suggested fix is ALSO 4.3.1 but it seems it is not taken in consideration.
PS: my csproj is here
Any help please ?
Thank you in adavance

Mend has a page about this
CVE-2019-0820issue, explaining when this notice might also be a false positive.For your situation it is a false positive
you are on .NET 6, which is higher than the mentioned vulnerable runtimes (see below) - your WebApp.proj has
<TargetFramework>net6.0</TargetFramework>you reference
System.Text.RegularExpressionsversion 4.3.1 or even higher.From that page: