Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

Security Alert #10

Open
github-actions bot opened this issue May 22, 2020 · 0 comments
Open

Security Alert #10

github-actions bot opened this issue May 22, 2020 · 0 comments

Comments

@github-actions
Copy link

digite/rasa-dx-augment (debian 10.3)

Title Severity CVE Package Name Installed Version Fixed Version References
python: wrong backtracking in urllib.request.AbstractBasicAuthHandler allows for a ReDoS HIGH CVE-2020-8492 libpython2.7-minimal 2.7.16-2+deb10u1 N/A http://lists.opensuse.org/opensuse-security-announce/2020-03/msg00003.html
https://bugs.python.org/issue39503
python/cpython#18284
https://python-security.readthedocs.io/vuln/urllib-basic-auth-regex.html
https://security.gentoo.org/glsa/202005-09
https://security.netapp.com/advisory/ntap-20200221-0001/
https://usn.ubuntu.com/4333-1/
https://usn.ubuntu.com/4333-2/
ash-pramila pushed a commit that referenced this issue Jun 4, 2020
* Strict Bot Training

* Strict Bot Training

* Merge branch 'master' of https://github.com/pmestry25/rasa-dx

# Conflicts:
#	bot_trainer/api/app/routers/bot.py
#	tests/unit_test/data_processor/data_processor_test.py

* Merge branch 'master' of https://github.com/pmestry25/rasa-dx

# Conflicts:
#	bot_trainer/api/app/routers/bot.py
#	tests/unit_test/data_processor/data_processor_test.py

Strict bot training
1. Added get training history route
2. Used Background Tasks for training
3. Added daily limit on model training

* Strict bot training - formatting changes

* Quality review changes

* Quality review changes

Co-authored-by: Purva Mestry <pmestry@digite.com>
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Projects
None yet
Development

No branches or pull requests

0 participants