-
Notifications
You must be signed in to change notification settings - Fork 28
Closed
Labels
area/dependencyIssues or PRs related to dependency changesIssues or PRs related to dependency changes
Description
The request
dependency has had a CVE in it for awhile now, but the fixed version does not support http+unix
protocol that is used in this project, so we cannot update.
This issue we would need to:
- See what it takes to update to new libraries/protocols
- Update
requests
library - Address any testing gaps
More info in this comment and related slack thread.
Metadata
Metadata
Assignees
Labels
area/dependencyIssues or PRs related to dependency changesIssues or PRs related to dependency changes