explosion / srsly

🦉 Modern high-performance serialization utilities for Python (JSON, MessagePack, Pickle)
MIT License
432 stars 31 forks source link

Update UltraJSON #65

Closed jhe921 closed 2 years ago

jhe921 commented 2 years ago

Hi,

UltraJSON was updated again to fix a security vulnerability with invalid surrogate pair characters.

Is it possible to merge the 555 and 550 changes associated with the 0.5.4 release into srsly?

Corey

adrianeboyd commented 2 years ago

Thanks for the note, I'll take a look.

jhe921 commented 2 years ago

Awesome, thank you!

polm commented 2 years ago

I think this is resolved by #66 and #67?

jhe921 commented 2 years ago

LGTM, closing issue.