Hi,
We are currently using Advanced Installer version 20.2 and are running into a problem where we are running a vulnerability scan to see which components have vulnerabilities. Several of the CVE vulnerabilities are coming from the SQLite dll and Zlib dll files. We are currently not using any of the database/database server features within our installer script but it still detects a SQLite dll. Could it be that somehow Advanced Installer still installs a version of the SQLite dll and places it in some kind of TEMP file? Perhaps the same happens with the Zlib dll? Or do we need to look at other tools which may have installed the SQLite dll or Zlib dll if we didn't use any of the database features within our installer script?
It would be great if you could let me know if Advanced Installer installs the SQLite DLL or Zlib DLL as part of the "main" or "overhead" files of Advanced Installer. Thank you!
Greetings,
Jordy
FOLLOW US