Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

Dependencies Update - Security Vulnerabilities fixed #8405

Closed
wants to merge 10 commits into from

Conversation

GarryStraitYT
Copy link

What do these changes do?

Updates dependencies to reduce security vulnerabilities

Are there changes in behavior for the user?

There is no changes in behavior that can be seen by the end user

Is it a substantial burden for the maintainers to support this?

I have not changed any core code but rather the version of the dependencies used by aiohttp to reflect the latest version.

Related issue number

No related issues

Checklist

No code was changed since last release. Dependencies were updated to prevent their security vulnerabilities from affecting the project.

GarryStraitYT and others added 8 commits April 19, 2024 14:44
…02be68dcdf7d7

[Snyk] Fix for 25 vulnerabilities
snyk-bot and others added 2 commits May 9, 2024 18:05
…ec32c6ec6f7b3

[Snyk] Fix for 24 vulnerabilities
@Dreamsorcerer
Copy link
Member

This is handled automatically by Dependabot (and has zero impact on users), but Pillow is failing due to needing to update or replace blockdiag: #8282 blockdiag/sphinxcontrib-blockdiag#26

I think replacing it with the builtin graphviz extension might be a good approach if you'd like to contribute: https://www.sphinx-doc.org/en/master/usage/extensions/graphviz.html

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
None yet
Projects
None yet
Development

Successfully merging this pull request may close these issues.

None yet

3 participants