Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

Update Jinja2 dependency to >= 3.1.3 #1049

Merged
merged 1 commit into from
Feb 27, 2024
Merged

Update Jinja2 dependency to >= 3.1.3 #1049

merged 1 commit into from
Feb 27, 2024

Conversation

tlento
Copy link
Contributor

@tlento tlento commented Feb 27, 2024

Due to a security vulnerability in Jinja2 (refer to details
at CVE-2024-22195 )
we must update to 3.1.3 or later.

@cla-bot cla-bot bot added the cla:yes label Feb 27, 2024
Copy link
Contributor Author

tlento commented Feb 27, 2024

Copy link

Thank you for your pull request! We could not find a changelog entry for this change. For details on how to document a change, see the contributing guide.

Due to a security vulnerability in Jinja2 (refer to details on
CVE-2024-22195 at GHSA-h5c8-rqwp-cp95)
we must update to 3.1.3 or later.
@tlento tlento merged commit 945d0ba into main Feb 27, 2024
18 checks passed
@tlento tlento deleted the update-jinja-dep branch February 27, 2024 01:36
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
Projects
None yet
Development

Successfully merging this pull request may close these issues.

2 participants