Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

Bump the dependencies group with 2 updates #497

Merged
merged 1 commit into from
Aug 7, 2024

Bump the dependencies group with 2 updates

c859a46
Select commit
Loading
Failed to load commit list.
Merged

Bump the dependencies group with 2 updates #497

Bump the dependencies group with 2 updates
c859a46
Select commit
Loading
Failed to load commit list.
Wiz Inc. (572fc38784) / Wiz Vulnerability Scanner completed Aug 7, 2024 in 3s

Wiz Vulnerability Scanner

Exposing Vulnerabilities with Wiz

Vulnerabilities Detected: 10

1C 2H 5M 1L 1I

Annotations

Check failure on line 1 in poetry.lock

See this annotation in the file changed.

@wiz-inc-572fc38784 wiz-inc-572fc38784 / Wiz Vulnerability Scanner

jupyter-server:2.14.0

Detected Vulnerabilities:
  CVE-2024-35178, Severity: High, Source: https://nvd.nist.gov/vuln/detail/CVE-2024-35178
    🩹 Fixed version: 2.14.1
    💥 Has public exploit
    🧨 Has CISA KEV exploit

Check failure on line 1 in poetry.lock

See this annotation in the file changed.

@wiz-inc-572fc38784 wiz-inc-572fc38784 / Wiz Vulnerability Scanner

jupyter-server-proxy:4.1.2

Detected Vulnerabilities:
  CVE-2024-35225, Severity: Critical, Source: https://github.com/advisories/GHSA-fvcq-4x64-hqxr
    🩹 Fixed version: 4.2.0
    💥 Has public exploit
    🧨 Has CISA KEV exploit

Check failure on line 1 in poetry.lock

See this annotation in the file changed.

@wiz-inc-572fc38784 wiz-inc-572fc38784 / Wiz Vulnerability Scanner

setuptools:69.5.1

Detected Vulnerabilities:
  CVE-2024-6345, Severity: High, Source: https://github.com/advisories/GHSA-cx63-2mw6-8hw5
    🩹 Fixed version: 70.0.0
    💥 Has public exploit
    🧨 Has CISA KEV exploit

Check warning on line 1 in poetry.lock

See this annotation in the file changed.

@wiz-inc-572fc38784 wiz-inc-572fc38784 / Wiz Vulnerability Scanner

urllib3:2.2.1

Detected Vulnerabilities:
  CVE-2024-37891, Severity: Medium, Source: https://github.com/advisories/GHSA-34jh-p97f-mpxf
    🩹 Fixed version: 2.2.2
    💥 Has public exploit
    🧨 Has CISA KEV exploit

Check warning on line 1 in poetry.lock

See this annotation in the file changed.

@wiz-inc-572fc38784 wiz-inc-572fc38784 / Wiz Vulnerability Scanner

tornado:6.4

Detected Vulnerabilities:
  GHSA-753j-mpmx-qq6g, Severity: Medium, Source: https://github.com/advisories/GHSA-753j-mpmx-qq6g
    CVSS score: 5.3
    🩹 Fixed version: 6.4.1
    💥 Has public exploit
    🧨 Has CISA KEV exploit
  GHSA-w235-7p84-xx57, Severity: Medium, Source: https://github.com/advisories/GHSA-w235-7p84-xx57
    CVSS score: 6.5
    🩹 Fixed version: 6.4.1
    💥 Has public exploit
    🧨 Has CISA KEV exploit

Check warning on line 1 in poetry.lock

See this annotation in the file changed.

@wiz-inc-572fc38784 wiz-inc-572fc38784 / Wiz Vulnerability Scanner

zipp:3.18.1

Detected Vulnerabilities:
  CVE-2024-5569, Severity: Medium, Source: https://github.com/advisories/GHSA-jfmj-5v4g-7637
    🩹 Fixed version: 3.19.1
    💥 Has public exploit
    🧨 Has CISA KEV exploit

Check warning on line 1 in poetry.lock

See this annotation in the file changed.

@wiz-inc-572fc38784 wiz-inc-572fc38784 / Wiz Vulnerability Scanner

requests:2.31.0

Detected Vulnerabilities:
  CVE-2024-35195, Severity: Medium, Source: https://github.com/advisories/GHSA-9wx4-h78v-vm56
    🩹 Fixed version: 2.32.0
    💥 Has public exploit
    🧨 Has CISA KEV exploit

Check notice on line 1 in poetry.lock

See this annotation in the file changed.

@wiz-inc-572fc38784 wiz-inc-572fc38784 / Wiz Vulnerability Scanner

cryptography:42.0.6

Detected Vulnerabilities:
  CVE-2024-4603Source: https://nvd.nist.gov/vuln/detail/CVE-2024-4603
    🩹 Fixed version: 42.0.8
    💥 Has public exploit
    🧨 Has CISA KEV exploit

Check notice on line 1 in poetry.lock

See this annotation in the file changed.

@wiz-inc-572fc38784 wiz-inc-572fc38784 / Wiz Vulnerability Scanner

certifi:2024.2.2

Detected Vulnerabilities:
  CVE-2024-39689, Severity: Low, Source: https://github.com/advisories/GHSA-248v-346w-9cwc
    🩹 Fixed version: 2024.7.4
    💥 Has public exploit
    🧨 Has CISA KEV exploit