IBM / ibm-cos-sdk-python-core

ibm-cos-sdk-python-core
Apache License 2.0
6 stars 14 forks source link

Update setup.cfg to fix for CVE-2024-35195 #24

Closed inuyasha82 closed 4 months ago

inuyasha82 commented 4 months ago

There is a vulnerability in requests reported by mend, that is fixed starting from version 2.32.0, but since 2.32.0 and 2.32.1 are yanked, i think it should be safe to start from 2.32.2.

IBMalok commented 4 months ago

@inuyasha82 - Thanks for raising the PR but won't accept the external PRs. And also fix will be delivered in the next release which is going to happen soon.