Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

One of your dependencies may have a security vulnerability #8

Closed
RDmitchell opened this issue Apr 17, 2019 · 3 comments
Closed

One of your dependencies may have a security vulnerability #8

RDmitchell opened this issue Apr 17, 2019 · 3 comments

Comments

@RDmitchell
Copy link

@CJKohler / @StephenCzarnecki -- I am putting this in an issue because I don't know who all the contributors are. Maybe you already got this email, but here is the content -- there were several of them

  LBNL-ETA/LPDM
Known moderate severity security vulnerability detected in morgan < 1.9.1 defined in package.json.package.json update suggested: morgan ~> 1.9.1.Always verify the validity and compatibility of suggestions with your codebase. Known moderate severity security vulnerability detected in morgan < 1.9.1 defined in package.json.
Known moderate severity security vulnerability detected in morgan < 1.9.1 defined in package.json.
package.json update suggested: morgan ~> 1.9.1.
Always verify the validity and compatibility of suggestions with your codebase.
  LBNL-ETA/LPDM
Known high severity security vulnerability detected in Jinja2 < 2.10.1 defined in requirements.txt.requirements.txt update suggested: Jinja2 ~> 2.10.1.Always verify the validity and compatibility of suggestions with your codebase. Known high severity security vulnerability detected in Jinja2 < 2.10.1 defined in requirements.txt.
Known high severity security vulnerability detected in Jinja2 < 2.10.1 defined in requirements.txt.
requirements.txt update suggested: Jinja2 ~> 2.10.1.
Always verify the validity and compatibility of suggestions with your codebase.
  LBNL-ETA/LPDM
Known high severity security vulnerability detected in paramiko >= 2.1.0, < 2.1.5defined in requirements.txt.requirements.txt update suggested: paramiko ~> 2.1.5.Always verify the validity and compatibility of suggestions with your codebase. Known high severity security vulnerability detected in paramiko >= 2.1.0, < 2.1.5defined in requirements.txt.
Known high severity security vulnerability detected in paramiko >= 2.1.0, < 2.1.5defined in requirements.txt.
requirements.txt update suggested: paramiko ~> 2.1.5.
Always verify the validity and compatibility of suggestions with your codebase.
  LBNL-ETA/LPDM
Known high severity security vulnerability detected in paramiko >= 2.1.0, < 2.1.6defined in requirements.txt.requirements.txt update suggested: paramiko ~> 2.1.6.Always verify the validity and compatibility of suggestions with your codebase. Known high severity security vulnerability detected in paramiko >= 2.1.0, < 2.1.6defined in requirements.txt.
Known high severity security vulnerability detected in paramiko >= 2.1.0, < 2.1.6defined in requirements.txt.
requirements.txt update suggested: paramiko ~> 2.1.6.
Always verify the validity and compatibility of suggestions with your codebase.
  LBNL-ETA/LPDM
Known moderate severity security vulnerability detected in requests <= 2.19.1defined in requirements.txt.requirements.txt update suggested: requests ~> 2.20.0.Always verify the validity and compatibility of suggestions with your codebase Known moderate severity security vulnerability detected in requests <= 2.19.1defined in requirements.txt.
Known moderate severity security vulnerability detected in requests <= 2.19.1defined in requirements.txt.
requirements.txt update suggested: requests ~> 2.20.0.
Always verify the validity and compatibility of suggestions with your codebase
@bnordman
Copy link
Collaborator

bnordman commented Apr 17, 2019 via email

@bnordman
Copy link
Collaborator

bnordman commented Apr 17, 2019 via email

@anandkp92
Copy link
Member

Closing the this issue because it has been resolved with this commit

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
None yet
Projects
None yet
Development

No branches or pull requests

3 participants