Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

Bump the dependencies group with 4 updates #428

Closed
wants to merge 1 commit into from

Bump the dependencies group with 4 updates

d5781c5
Select commit
Loading
Failed to load commit list.
Closed

Bump the dependencies group with 4 updates #428

Bump the dependencies group with 4 updates
d5781c5
Select commit
Loading
Failed to load commit list.
Wiz Inc. (572fc38784) / Wiz Vulnerability Scanner completed Feb 21, 2024 in 2s

Wiz Vulnerability Scanner

Greetings, Serenader of Software Sonata! 🎵

Wiz's wand of discovery waved over this realm, revealing untold wonders. 🪄🌟

Exposing Vulnerabilities with Wiz 🪄

🔮 Vulnerabilities Detected: 6

― Note from Wiz: "Your code is pure magic - keep conjuring! 🪄✨"

Annotations

Check failure on line 1 in poetry.lock

See this annotation in the file changed.

@wiz-inc-572fc38784 wiz-inc-572fc38784 / Wiz Vulnerability Scanner

cryptography:41.0.7

Detected Vulnerabilities:
  CVE-2024-0727, Severity: Medium, Source: https://github.com/advisories/GHSA-9v9h-cgj8-h64p
    CVSS score: 5.5, CVSS exploitability score: 1.8
    🩹 Fixed version: 42.0.2
    💥 Has public exploit
    🧨 Has CISA KEV exploit
  CVE-2023-50782, Severity: High, Source: https://github.com/advisories/GHSA-3ww4-gg4f-jr7f
    CVSS score: 7.5, CVSS exploitability score: 3.9
    🩹 Fixed version: 42.0.0
    💥 Has public exploit
    🧨 Has CISA KEV exploit
  CVE-2023-6129, Severity: Medium, Source: https://nvd.nist.gov/vuln/detail/CVE-2023-6129
    CVSS score: 6.5, CVSS exploitability score: 2.2
    🩹 Fixed version: 42.0.2
    💥 Has public exploit
    🧨 Has CISA KEV exploit

Check warning on line 1 in poetry.lock

See this annotation in the file changed.

@wiz-inc-572fc38784 wiz-inc-572fc38784 / Wiz Vulnerability Scanner

aiohttp:3.9.1

Detected Vulnerabilities:
  CVE-2024-23334, Severity: Medium, Source: https://github.com/advisories/GHSA-5h86-8mv2-jq9f
    CVSS score: 7.5, CVSS exploitability score: 3.9
    🩹 Fixed version: 3.9.2
    💥 Has public exploit
    🧨 Has CISA KEV exploit
  CVE-2024-23829, Severity: Medium, Source: https://github.com/advisories/GHSA-8qpw-xqxj-h4r2
    CVSS score: 6.5, CVSS exploitability score: 3.9
    🩹 Fixed version: 3.9.2
    💥 Has public exploit
    🧨 Has CISA KEV exploit

Check warning on line 1 in poetry.lock

See this annotation in the file changed.

@wiz-inc-572fc38784 wiz-inc-572fc38784 / Wiz Vulnerability Scanner

jinja2:3.1.2

Detected Vulnerabilities:
  CVE-2024-22195, Severity: Medium, Source: https://github.com/advisories/GHSA-h5c8-rqwp-cp95
    CVSS score: 6.1, CVSS exploitability score: 2.8
    🩹 Fixed version: 3.1.3
    💥 Has public exploit
    🧨 Has CISA KEV exploit