Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

Bump sphinx from 7.3.7 to 7.4.0 in the dependencies group #487

Merged
merged 1 commit into from
Jul 15, 2024

Bump sphinx from 7.3.7 to 7.4.0 in the dependencies group

fd7199a
Select commit
Loading
Failed to load commit list.
Merged

Bump sphinx from 7.3.7 to 7.4.0 in the dependencies group #487

Bump sphinx from 7.3.7 to 7.4.0 in the dependencies group
fd7199a
Select commit
Loading
Failed to load commit list.
Wiz Inc. (572fc38784) / Wiz Vulnerability Scanner completed Jul 15, 2024 in 3s

Wiz Vulnerability Scanner

Exposing Vulnerabilities with Wiz

Vulnerabilities Detected: 9

1C 1H 5M 1L 1I

Annotations

Check failure on line 1 in poetry.lock

See this annotation in the file changed.

@wiz-inc-572fc38784 wiz-inc-572fc38784 / Wiz Vulnerability Scanner

jupyter-server:2.14.0

Detected Vulnerabilities:
  CVE-2024-35178, Severity: High, Source: https://nvd.nist.gov/vuln/detail/CVE-2024-35178
    🩹 Fixed version: 2.14.1
    💥 Has public exploit
    🧨 Has CISA KEV exploit

Check failure on line 1 in poetry.lock

See this annotation in the file changed.

@wiz-inc-572fc38784 wiz-inc-572fc38784 / Wiz Vulnerability Scanner

jupyter-server-proxy:4.1.2

Detected Vulnerabilities:
  CVE-2024-35225, Severity: Critical, Source: https://github.com/advisories/GHSA-fvcq-4x64-hqxr
    🩹 Fixed version: 4.2.0
    💥 Has public exploit
    🧨 Has CISA KEV exploit

Check warning on line 1 in poetry.lock

See this annotation in the file changed.

@wiz-inc-572fc38784 wiz-inc-572fc38784 / Wiz Vulnerability Scanner

zipp:3.18.1

Detected Vulnerabilities:
  CVE-2024-5569, Severity: Medium, Source: https://github.com/advisories/GHSA-jfmj-5v4g-7637
    🩹 Fixed version: 3.19.1
    💥 Has public exploit
    🧨 Has CISA KEV exploit

Check warning on line 1 in poetry.lock

See this annotation in the file changed.

@wiz-inc-572fc38784 wiz-inc-572fc38784 / Wiz Vulnerability Scanner

requests:2.31.0

Detected Vulnerabilities:
  CVE-2024-35195, Severity: Medium, Source: https://github.com/advisories/GHSA-9wx4-h78v-vm56
    🩹 Fixed version: 2.32.0
    💥 Has public exploit
    🧨 Has CISA KEV exploit

Check warning on line 1 in poetry.lock

See this annotation in the file changed.

@wiz-inc-572fc38784 wiz-inc-572fc38784 / Wiz Vulnerability Scanner

tornado:6.4

Detected Vulnerabilities:
  GHSA-w235-7p84-xx57, Severity: Medium, Source: https://github.com/advisories/GHSA-w235-7p84-xx57
    CVSS score: 6.5
    🩹 Fixed version: 6.4.1
    💥 Has public exploit
    🧨 Has CISA KEV exploit
  GHSA-753j-mpmx-qq6g, Severity: Medium, Source: https://github.com/advisories/GHSA-753j-mpmx-qq6g
    CVSS score: 5.3
    🩹 Fixed version: 6.4.1
    💥 Has public exploit
    🧨 Has CISA KEV exploit

Check warning on line 1 in poetry.lock

See this annotation in the file changed.

@wiz-inc-572fc38784 wiz-inc-572fc38784 / Wiz Vulnerability Scanner

urllib3:2.2.1

Detected Vulnerabilities:
  CVE-2024-37891, Severity: Medium, Source: https://github.com/advisories/GHSA-34jh-p97f-mpxf
    🩹 Fixed version: 2.2.2
    💥 Has public exploit
    🧨 Has CISA KEV exploit

Check notice on line 1 in poetry.lock

See this annotation in the file changed.

@wiz-inc-572fc38784 wiz-inc-572fc38784 / Wiz Vulnerability Scanner

certifi:2024.2.2

Detected Vulnerabilities:
  CVE-2024-39689, Severity: Low, Source: https://github.com/advisories/GHSA-248v-346w-9cwc
    🩹 Fixed version: 2024.7.4
    💥 Has public exploit
    🧨 Has CISA KEV exploit

Check notice on line 1 in poetry.lock

See this annotation in the file changed.

@wiz-inc-572fc38784 wiz-inc-572fc38784 / Wiz Vulnerability Scanner

cryptography:42.0.6

Detected Vulnerabilities:
  CVE-2024-4603Source: https://nvd.nist.gov/vuln/detail/CVE-2024-4603
    🩹 Fixed version: 42.0.8
    💥 Has public exploit
    🧨 Has CISA KEV exploit