Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

Require 6.0 pyyaml version #106

Merged
merged 1 commit into from
Aug 22, 2022
Merged

Require 6.0 pyyaml version #106

merged 1 commit into from
Aug 22, 2022

Conversation

mdesmet
Copy link
Member

@mdesmet mdesmet commented Aug 22, 2022

Overview

Fixes #96

Checklist

  • I have run this code in development and it appears to resolve the stated issue
  • This PR includes tests, or tests are not required/relevant for this PR
  • README.md updated and added information about my change
  • I have run changie new to create a changelog entry

@mdesmet mdesmet merged commit df124f1 into starburstdata:master Aug 22, 2022
@mdesmet mdesmet deleted the bug/upgrade-pyyaml branch August 22, 2022 22:47
@MichaelTiemannOSC
Copy link

The change to go directly to 6.0 breaks awscli dependencies (PyYaml 5.4.1 and also addresses the CVE), no?

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
None yet
Projects
None yet
Development

Successfully merging this pull request may close these issues.

CVE: 2020-14343 found in PyYAML - Version: 5.3.1 [PYTHON]
3 participants