Skip to content

Conversation

@himani2411
Copy link
Contributor

@himani2411 himani2411 commented Feb 19, 2025

Description

Upgrade python-jose to 3.4.0 to address Vulnerabilities https://github.com/aws/aws-parallelcluster-ui/security/dependabot/64

  • python-jose 3.4.0 depends on pyasn1<0.5.0 and >=0.4.1

How Has This Been Tested?

bash scripts/deploy.sh my-env and created a basic 3.11.1 cluster

References

PR Quality Checklist

  • I added tests to new or existing code
  • I removed hardcoded strings and used react-i18next library (useTranslation hook and/or Trans component), see an example here
  • I made sure no sensitive info gets logged at any time in the codebase (see here) (e.g. no user info or details, no stacktraces, etc.)
  • I made sure that any GitHub issue solved by this PR is correctly linked
  • I checked that infrastructure/update_infrastructure.sh runs without any error
  • I checked that npm run build builds without any error
  • I checked that clusters are listed correctly
  • I checked that a new cluster can be created (config is produced and dry run passes)
  • I checked that login and logout work as expected

In order to increase the likelihood of your contribution being accepted, please make sure you have read both the Contributing Guidelines and the Project Guidelines

By submitting this pull request, I confirm that you can use, modify, copy, and redistribute this contribution, under the terms of your choice.

@himani2411 himani2411 merged commit 65178a5 into aws:main Feb 19, 2025
2 checks passed
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

2 participants