Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

Bump the dependencies group with 1 update #419

Closed
wants to merge 1 commit into from

Bump the dependencies group with 1 update

7bbe92f
Select commit
Loading
Failed to load commit list.
Closed

Bump the dependencies group with 1 update #419

Bump the dependencies group with 1 update
7bbe92f
Select commit
Loading
Failed to load commit list.
Wiz Inc. (572fc38784) / Wiz Vulnerability Scanner completed Feb 12, 2024 in 2s

Wiz Vulnerability Scanner

Salute, Overseer of Obfuscated Outputs! 🏴

Wiz's quill of scrutiny danced, tracing patterns of discovery within this realm. ✍️🌟

Exposing Vulnerabilities with Wiz 🪄

🔮 Vulnerabilities Detected: 4

― Note from Wiz: "Each line you write is a brushstroke on the canvas of coding wonder - keep painting! 🎨🔮"

Annotations

Check warning on line 1 in poetry.lock

See this annotation in the file changed.

@wiz-inc-572fc38784 wiz-inc-572fc38784 / Wiz Vulnerability Scanner

aiohttp:3.9.1

Detected Vulnerabilities:
  CVE-2024-23829, Severity: Medium, Source: https://github.com/advisories/GHSA-8qpw-xqxj-h4r2
    CVSS score: 6.5, CVSS exploitability score: 3.9
    🩹 Fixed version: 3.9.2
    💥 Has public exploit
    🧨 Has CISA KEV exploit
  CVE-2024-23334, Severity: Medium, Source: https://github.com/advisories/GHSA-5h86-8mv2-jq9f
    CVSS score: 7.5, CVSS exploitability score: 3.9
    🩹 Fixed version: 3.9.2
    💥 Has public exploit
    🧨 Has CISA KEV exploit

Check warning on line 1 in poetry.lock

See this annotation in the file changed.

@wiz-inc-572fc38784 wiz-inc-572fc38784 / Wiz Vulnerability Scanner

cryptography:41.0.7

Detected Vulnerabilities:
  CVE-2023-50782, Severity: Medium, Source: https://github.com/advisories/GHSA-3ww4-gg4f-jr7f
    🩹 Fixed version: 42.0.0
    💥 Has public exploit
    🧨 Has CISA KEV exploit

Check warning on line 1 in poetry.lock

See this annotation in the file changed.

@wiz-inc-572fc38784 wiz-inc-572fc38784 / Wiz Vulnerability Scanner

jinja2:3.1.2

Detected Vulnerabilities:
  CVE-2024-22195, Severity: Medium, Source: https://github.com/advisories/GHSA-h5c8-rqwp-cp95
    CVSS score: 6.1, CVSS exploitability score: 2.8
    🩹 Fixed version: 3.1.3
    💥 Has public exploit
    🧨 Has CISA KEV exploit

Check warning on line 1 in poetry.lock

See this annotation in the file changed.

@wiz-inc-572fc38784 wiz-inc-572fc38784 / Wiz Vulnerability Scanner

aiohttp:3.9.1

Detected Vulnerabilities:
  CVE-2024-23334, Severity: Medium, Source: https://github.com/advisories/GHSA-5h86-8mv2-jq9f
    CVSS score: 7.5, CVSS exploitability score: 3.9
    🩹 Fixed version: 3.9.2
    💥 Has public exploit
    🧨 Has CISA KEV exploit
  CVE-2024-23829, Severity: Medium, Source: https://github.com/advisories/GHSA-8qpw-xqxj-h4r2
    CVSS score: 6.5, CVSS exploitability score: 3.9
    🩹 Fixed version: 3.9.2
    💥 Has public exploit
    🧨 Has CISA KEV exploit

Check warning on line 1 in poetry.lock

See this annotation in the file changed.

@wiz-inc-572fc38784 wiz-inc-572fc38784 / Wiz Vulnerability Scanner

cryptography:41.0.7

Detected Vulnerabilities:
  CVE-2023-50782, Severity: Medium, Source: https://github.com/advisories/GHSA-3ww4-gg4f-jr7f
    🩹 Fixed version: 42.0.0
    💥 Has public exploit
    🧨 Has CISA KEV exploit

Check warning on line 1 in poetry.lock

See this annotation in the file changed.

@wiz-inc-572fc38784 wiz-inc-572fc38784 / Wiz Vulnerability Scanner

jinja2:3.1.2

Detected Vulnerabilities:
  CVE-2024-22195, Severity: Medium, Source: https://github.com/advisories/GHSA-h5c8-rqwp-cp95
    CVSS score: 6.1, CVSS exploitability score: 2.8
    🩹 Fixed version: 3.1.3
    💥 Has public exploit
    🧨 Has CISA KEV exploit