juju / charm-tools

Tools for charm authors and maintainers
Other
42 stars 64 forks source link

setup: Update pin PyYAML #663

Closed freyes closed 1 year ago

freyes commented 1 year ago

Allow the use of PyYAML 6.x with the exception of PyYAML-6.0 which has a broken build dependency relation to Cython.

This allows migrating away from PyYAML-5.3.1 which has known security bugs[0]

[0] https://security.snyk.io/package/pip/PyYAML/5.3.1

Description of change

Checklist