Skip to content
This repository has been archived by the owner on Jan 23, 2024. It is now read-only.

bump dependency pyyaml>=4.2b1 #11

Closed
ahmetb opened this issue Jan 30, 2019 · 2 comments
Closed

bump dependency pyyaml>=4.2b1 #11

ahmetb opened this issue Jan 30, 2019 · 2 comments

Comments

@ahmetb
Copy link

ahmetb commented Jan 30, 2019

Otherwise any github project importing this package shows a high-severity security alert:

https://github.com/GoogleCloudPlatform/microservices-demo/blob/31df60f050a113c771a91477863ce93c8ed0f078/src/recommendationservice/requirements.txt#L30

image

@hrasadi
Copy link

hrasadi commented Feb 1, 2019

Thanks for bringing this into our attention. We are working on fixing the dependencies and will soon release an update

@hrasadi
Copy link

hrasadi commented Mar 15, 2019

Done with the release of agent version 2.10. We now use pyyaml 5.1.

Sign up for free to subscribe to this conversation on GitHub. Already have an account? Sign in.
Labels
None yet
Projects
None yet
Development

No branches or pull requests

2 participants