Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

Pin requests (new version is broken), and update urllib3 in requirements-dev #127

Merged
merged 2 commits into from
May 4, 2023

Conversation

victoria-miltcheva
Copy link
Member

@victoria-miltcheva victoria-miltcheva commented May 4, 2023

Since the requests v2.30.0 package appears to be broken, I've pinned requests to the previous version. I've also bumped the version of urllib3 used for local development to the version which comes with requests v2.29.0.

@victoria-miltcheva victoria-miltcheva marked this pull request as ready for review May 4, 2023 21:07
…nts-dev

Signed-off-by: Victoria Miltcheva <12804086+victoria-miltcheva@users.noreply.github.com>
Signed-off-by: Victoria Miltcheva <12804086+victoria-miltcheva@users.noreply.github.com>
@victoria-miltcheva victoria-miltcheva added the bug Something isn't working label May 4, 2023
@victoria-miltcheva victoria-miltcheva merged commit 8e0d29a into master May 4, 2023
@victoria-miltcheva victoria-miltcheva deleted the peg-requests-dependency branch May 4, 2023 21:37
@victoria-miltcheva victoria-miltcheva changed the title Peg requests (new version is broken), and update urllib3 in requirements-dev Pin requests (new version is broken), and update urllib3 in requirements-dev May 5, 2023
@bigpick
Copy link
Member

bigpick commented May 25, 2023

CVE-2023-32681 is getting flagged as requests is stuck under the patched version (2.31.0) --

Since the requests v2.30.0 package appears to be broken

Is there more information somewhere related to this statement to be able to re-test if is still the case with the new 2.31.0?

edit: #130

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
bug Something isn't working
Projects
None yet
Development

Successfully merging this pull request may close these issues.

3 participants