Python Packaging Authority (PyPA)'s setuptools is a library designed to facilitate packaging Python projects. Setuptools version 65.5.0 and earlier could allow remote attackers to cause a denial of service by fetching malicious HTML from a PyPI package or custom PackageIndex page due to a vulnerable Regular Expression in package_index. This has been patched in version 65.5.1.
This PR contains the following updates:
==58.5.3
->==65.5.1
GitHub Vulnerability Alerts
CVE-2022-40897
Python Packaging Authority (PyPA)'s setuptools is a library designed to facilitate packaging Python projects. Setuptools version 65.5.0 and earlier could allow remote attackers to cause a denial of service by fetching malicious HTML from a PyPI package or custom PackageIndex page due to a vulnerable Regular Expression in
package_index
. This has been patched in version 65.5.1.Release Notes
pypa/setuptools (setuptools)
### [`v65.5.1`](https://togithub.com/pypa/setuptools/compare/v65.5.0...v65.5.1) [Compare Source](https://togithub.com/pypa/setuptools/compare/v65.5.0...v65.5.1) ### [`v65.5.0`](https://togithub.com/pypa/setuptools/compare/v65.4.1...v65.5.0) [Compare Source](https://togithub.com/pypa/setuptools/compare/v65.4.1...v65.5.0) ### [`v65.4.1`](https://togithub.com/pypa/setuptools/compare/v65.4.0...v65.4.1) [Compare Source](https://togithub.com/pypa/setuptools/compare/v65.4.0...v65.4.1) ### [`v65.4.0`](https://togithub.com/pypa/setuptools/compare/v65.3.0...v65.4.0) [Compare Source](https://togithub.com/pypa/setuptools/compare/v65.3.0...v65.4.0) ### [`v65.3.0`](https://togithub.com/pypa/setuptools/compare/v65.2.0...v65.3.0) [Compare Source](https://togithub.com/pypa/setuptools/compare/v65.2.0...v65.3.0) ### [`v65.2.0`](https://togithub.com/pypa/setuptools/compare/v65.1.1...v65.2.0) [Compare Source](https://togithub.com/pypa/setuptools/compare/v65.1.1...v65.2.0) ### [`v65.1.1`](https://togithub.com/pypa/setuptools/compare/v65.1.0...v65.1.1) [Compare Source](https://togithub.com/pypa/setuptools/compare/v65.1.0...v65.1.1) ### [`v65.1.0`](https://togithub.com/pypa/setuptools/compare/v65.0.2...v65.1.0) [Compare Source](https://togithub.com/pypa/setuptools/compare/v65.0.2...v65.1.0) ### [`v65.0.2`](https://togithub.com/pypa/setuptools/compare/v65.0.1...v65.0.2) [Compare Source](https://togithub.com/pypa/setuptools/compare/v65.0.1...v65.0.2) ### [`v65.0.1`](https://togithub.com/pypa/setuptools/compare/v65.0.0...v65.0.1) [Compare Source](https://togithub.com/pypa/setuptools/compare/v65.0.0...v65.0.1) ### [`v65.0.0`](https://togithub.com/pypa/setuptools/compare/v64.0.3...v65.0.0) [Compare Source](https://togithub.com/pypa/setuptools/compare/v64.0.3...v65.0.0) ### [`v64.0.3`](https://togithub.com/pypa/setuptools/compare/v64.0.2...v64.0.3) [Compare Source](https://togithub.com/pypa/setuptools/compare/v64.0.2...v64.0.3) ### [`v64.0.2`](https://togithub.com/pypa/setuptools/compare/v64.0.1...v64.0.2) [Compare Source](https://togithub.com/pypa/setuptools/compare/v64.0.1...v64.0.2) ### [`v64.0.1`](https://togithub.com/pypa/setuptools/compare/v64.0.0...v64.0.1) [Compare Source](https://togithub.com/pypa/setuptools/compare/v64.0.0...v64.0.1) ### [`v64.0.0`](https://togithub.com/pypa/setuptools/compare/v63.4.3...v64.0.0) [Compare Source](https://togithub.com/pypa/setuptools/compare/v63.4.3...v64.0.0) ### [`v63.4.3`](https://togithub.com/pypa/setuptools/compare/v63.4.2...v63.4.3) [Compare Source](https://togithub.com/pypa/setuptools/compare/v63.4.2...v63.4.3) ### [`v63.4.2`](https://togithub.com/pypa/setuptools/compare/v63.4.1...v63.4.2) [Compare Source](https://togithub.com/pypa/setuptools/compare/v63.4.1...v63.4.2) ### [`v63.4.1`](https://togithub.com/pypa/setuptools/compare/v63.4.0...v63.4.1) [Compare Source](https://togithub.com/pypa/setuptools/compare/v63.4.0...v63.4.1) ### [`v63.4.0`](https://togithub.com/pypa/setuptools/compare/v63.3.0...v63.4.0) [Compare Source](https://togithub.com/pypa/setuptools/compare/v63.3.0...v63.4.0) ### [`v63.3.0`](https://togithub.com/pypa/setuptools/compare/v63.2.0...v63.3.0) [Compare Source](https://togithub.com/pypa/setuptools/compare/v63.2.0...v63.3.0) ### [`v63.2.0`](https://togithub.com/pypa/setuptools/compare/v63.1.0...v63.2.0) [Compare Source](https://togithub.com/pypa/setuptools/compare/v63.1.0...v63.2.0) ### [`v63.1.0`](https://togithub.com/pypa/setuptools/compare/v63.0.0...v63.1.0) [Compare Source](https://togithub.com/pypa/setuptools/compare/v63.0.0...v63.1.0) ### [`v63.0.0`](https://togithub.com/pypa/setuptools/compare/v62.6.0...v63.0.0) [Compare Source](https://togithub.com/pypa/setuptools/compare/v62.6.0...v63.0.0) ### [`v62.6.0`](https://togithub.com/pypa/setuptools/compare/v62.5.0...v62.6.0) [Compare Source](https://togithub.com/pypa/setuptools/compare/v62.5.0...v62.6.0) ### [`v62.5.0`](https://togithub.com/pypa/setuptools/compare/v62.4.0...v62.5.0) [Compare Source](https://togithub.com/pypa/setuptools/compare/v62.4.0...v62.5.0) ### [`v62.4.0`](https://togithub.com/pypa/setuptools/compare/v62.3.4...v62.4.0) [Compare Source](https://togithub.com/pypa/setuptools/compare/v62.3.4...v62.4.0) ### [`v62.3.4`](https://togithub.com/pypa/setuptools/compare/v62.3.3...v62.3.4) [Compare Source](https://togithub.com/pypa/setuptools/compare/v62.3.3...v62.3.4) ### [`v62.3.3`](https://togithub.com/pypa/setuptools/compare/v62.3.2...v62.3.3) [Compare Source](https://togithub.com/pypa/setuptools/compare/v62.3.2...v62.3.3) ### [`v62.3.2`](https://togithub.com/pypa/setuptools/compare/v62.3.1...v62.3.2) [Compare Source](https://togithub.com/pypa/setuptools/compare/v62.3.1...v62.3.2) ### [`v62.3.1`](https://togithub.com/pypa/setuptools/compare/v62.3.0...v62.3.1) [Compare Source](https://togithub.com/pypa/setuptools/compare/v62.3.0...v62.3.1) ### [`v62.3.0`](https://togithub.com/pypa/setuptools/compare/v62.2.0...v62.3.0) [Compare Source](https://togithub.com/pypa/setuptools/compare/v62.2.0...v62.3.0) ### [`v62.2.0`](https://togithub.com/pypa/setuptools/compare/v62.1.0...v62.2.0) [Compare Source](https://togithub.com/pypa/setuptools/compare/v62.1.0...v62.2.0) ### [`v62.1.0`](https://togithub.com/pypa/setuptools/compare/v62.0.0...v62.1.0) [Compare Source](https://togithub.com/pypa/setuptools/compare/v62.0.0...v62.1.0) ### [`v62.0.0`](https://togithub.com/pypa/setuptools/compare/v61.3.1...v62.0.0) [Compare Source](https://togithub.com/pypa/setuptools/compare/v61.3.1...v62.0.0) ### [`v61.3.1`](https://togithub.com/pypa/setuptools/compare/v61.3.0...v61.3.1) [Compare Source](https://togithub.com/pypa/setuptools/compare/v61.3.0...v61.3.1) ### [`v61.3.0`](https://togithub.com/pypa/setuptools/compare/v61.2.0...v61.3.0) [Compare Source](https://togithub.com/pypa/setuptools/compare/v61.2.0...v61.3.0) ### [`v61.2.0`](https://togithub.com/pypa/setuptools/compare/v61.1.1...v61.2.0) [Compare Source](https://togithub.com/pypa/setuptools/compare/v61.1.1...v61.2.0) ### [`v61.1.1`](https://togithub.com/pypa/setuptools/compare/v61.1.0...v61.1.1) [Compare Source](https://togithub.com/pypa/setuptools/compare/v61.1.0...v61.1.1) ### [`v61.1.0`](https://togithub.com/pypa/setuptools/compare/v61.0.0...v61.1.0) [Compare Source](https://togithub.com/pypa/setuptools/compare/v61.0.0...v61.1.0) ### [`v61.0.0`](https://togithub.com/pypa/setuptools/compare/v60.10.0...v61.0.0) [Compare Source](https://togithub.com/pypa/setuptools/compare/v60.10.0...v61.0.0) ### [`v60.10.0`](https://togithub.com/pypa/setuptools/compare/v60.9.3...v60.10.0) [Compare Source](https://togithub.com/pypa/setuptools/compare/v60.9.3...v60.10.0) ### [`v60.9.3`](https://togithub.com/pypa/setuptools/compare/v60.9.2...v60.9.3) [Compare Source](https://togithub.com/pypa/setuptools/compare/v60.9.2...v60.9.3) ### [`v60.9.2`](https://togithub.com/pypa/setuptools/compare/v60.9.1...v60.9.2) [Compare Source](https://togithub.com/pypa/setuptools/compare/v60.9.1...v60.9.2) ### [`v60.9.1`](https://togithub.com/pypa/setuptools/compare/v60.9.0...v60.9.1) [Compare Source](https://togithub.com/pypa/setuptools/compare/v60.9.0...v60.9.1) ### [`v60.9.0`](https://togithub.com/pypa/setuptools/compare/v60.8.2...v60.9.0) [Compare Source](https://togithub.com/pypa/setuptools/compare/v60.8.2...v60.9.0) ### [`v60.8.2`](https://togithub.com/pypa/setuptools/compare/v60.8.1...v60.8.2) [Compare Source](https://togithub.com/pypa/setuptools/compare/v60.8.1...v60.8.2) ### [`v60.8.1`](https://togithub.com/pypa/setuptools/compare/v60.8.0...v60.8.1) [Compare Source](https://togithub.com/pypa/setuptools/compare/v60.8.0...v60.8.1) ### [`v60.8.0`](https://togithub.com/pypa/setuptools/compare/v60.7.1...v60.8.0) [Compare Source](https://togithub.com/pypa/setuptools/compare/v60.7.1...v60.8.0) ### [`v60.7.1`](https://togithub.com/pypa/setuptools/compare/v60.7.0...v60.7.1) [Compare Source](https://togithub.com/pypa/setuptools/compare/v60.7.0...v60.7.1) ### [`v60.7.0`](https://togithub.com/pypa/setuptools/compare/v60.6.0...v60.7.0) [Compare Source](https://togithub.com/pypa/setuptools/compare/v60.6.0...v60.7.0) ### [`v60.6.0`](https://togithub.com/pypa/setuptools/compare/v60.5.0...v60.6.0) [Compare Source](https://togithub.com/pypa/setuptools/compare/v60.5.0...v60.6.0) ### [`v60.5.0`](https://togithub.com/pypa/setuptools/compare/v60.4.0...v60.5.0) [Compare Source](https://togithub.com/pypa/setuptools/compare/v60.4.0...v60.5.0) ### [`v60.4.0`](https://togithub.com/pypa/setuptools/compare/v60.3.1...v60.4.0) [Compare Source](https://togithub.com/pypa/setuptools/compare/v60.3.1...v60.4.0) ### [`v60.3.1`](https://togithub.com/pypa/setuptools/compare/v60.3.0...v60.3.1) [Compare Source](https://togithub.com/pypa/setuptools/compare/v60.3.0...v60.3.1) ### [`v60.3.0`](https://togithub.com/pypa/setuptools/compare/v60.2.0...v60.3.0) [Compare Source](https://togithub.com/pypa/setuptools/compare/v60.2.0...v60.3.0) ### [`v60.2.0`](https://togithub.com/pypa/setuptools/compare/v60.1.1...v60.2.0) [Compare Source](https://togithub.com/pypa/setuptools/compare/v60.1.1...v60.2.0) ### [`v60.1.1`](https://togithub.com/pypa/setuptools/compare/v60.1.0...v60.1.1) [Compare Source](https://togithub.com/pypa/setuptools/compare/v60.1.0...v60.1.1) ### [`v60.1.0`](https://togithub.com/pypa/setuptools/compare/v60.0.5...v60.1.0) [Compare Source](https://togithub.com/pypa/setuptools/compare/v60.0.5...v60.1.0) ### [`v60.0.5`](https://togithub.com/pypa/setuptools/compare/v60.0.4...v60.0.5) [Compare Source](https://togithub.com/pypa/setuptools/compare/v60.0.4...v60.0.5) ### [`v60.0.4`](https://togithub.com/pypa/setuptools/compare/v60.0.3...v60.0.4) [Compare Source](https://togithub.com/pypa/setuptools/compare/v60.0.3...v60.0.4) ### [`v60.0.3`](https://togithub.com/pypa/setuptools/compare/v60.0.2...v60.0.3) [Compare Source](https://togithub.com/pypa/setuptools/compare/v60.0.2...v60.0.3) ### [`v60.0.2`](https://togithub.com/pypa/setuptools/compare/v60.0.1...v60.0.2) [Compare Source](https://togithub.com/pypa/setuptools/compare/v60.0.1...v60.0.2) ### [`v60.0.1`](https://togithub.com/pypa/setuptools/compare/v60.0.0...v60.0.1) [Compare Source](https://togithub.com/pypa/setuptools/compare/v60.0.0...v60.0.1) ### [`v60.0.0`](https://togithub.com/pypa/setuptools/compare/v59.8.0...v60.0.0) [Compare Source](https://togithub.com/pypa/setuptools/compare/v59.8.0...v60.0.0) ### [`v59.8.0`](https://togithub.com/pypa/setuptools/compare/v59.7.0...v59.8.0) [Compare Source](https://togithub.com/pypa/setuptools/compare/v59.7.0...v59.8.0) ### [`v59.7.0`](https://togithub.com/pypa/setuptools/compare/v59.6.0...v59.7.0) [Compare Source](https://togithub.com/pypa/setuptools/compare/v59.6.0...v59.7.0) ### [`v59.6.0`](https://togithub.com/pypa/setuptools/compare/v59.5.0...v59.6.0) [Compare Source](https://togithub.com/pypa/setuptools/compare/v59.5.0...v59.6.0) ### [`v59.5.0`](https://togithub.com/pypa/setuptools/compare/v59.4.0...v59.5.0) [Compare Source](https://togithub.com/pypa/setuptools/compare/v59.4.0...v59.5.0) ### [`v59.4.0`](https://togithub.com/pypa/setuptools/compare/v59.3.0...v59.4.0) [Compare Source](https://togithub.com/pypa/setuptools/compare/v59.3.0...v59.4.0) ### [`v59.3.0`](https://togithub.com/pypa/setuptools/compare/v59.2.0...v59.3.0) [Compare Source](https://togithub.com/pypa/setuptools/compare/v59.2.0...v59.3.0) ### [`v59.2.0`](https://togithub.com/pypa/setuptools/compare/v59.1.1...v59.2.0) [Compare Source](https://togithub.com/pypa/setuptools/compare/v59.1.1...v59.2.0) ### [`v59.1.1`](https://togithub.com/pypa/setuptools/compare/v59.1.0...v59.1.1) [Compare Source](https://togithub.com/pypa/setuptools/compare/v59.1.0...v59.1.1) ### [`v59.1.0`](https://togithub.com/pypa/setuptools/compare/v59.0.1...v59.1.0) [Compare Source](https://togithub.com/pypa/setuptools/compare/v59.0.1...v59.1.0) ### [`v59.0.1`](https://togithub.com/pypa/setuptools/compare/v58.5.3...v59.0.1) [Compare Source](https://togithub.com/pypa/setuptools/compare/v58.5.3...v59.0.1)Configuration
📅 Schedule: Branch creation - "" (UTC), Automerge - At any time (no schedule defined).
🚦 Automerge: Disabled by config. Please merge this manually once you are satisfied.
♻ Rebasing: Whenever PR becomes conflicted, or you tick the rebase/retry checkbox.
🔕 Ignore: Close this PR and you won't be reminded about this update again.
This PR has been generated by Mend Renovate. View repository job log here.