alan-turing-institute / spatial-inequality

MIT License
9 stars 1 forks source link

eventlet dependabot alert #31

Open jack89roberts opened 2 years ago

jack89roberts commented 2 years ago

Dependabot would like eventlet >= 0.31.0 due to a possible memory exploit: https://github.com/advisories/GHSA-9p9m-jm8w-94p2 , but upgrading breaks gunicorn (see https://github.com/eventlet/eventlet/issues/702).