mailpile / Mailpile

A free & open modern, fast email client with user-friendly encryption and privacy features
https://mailpile.is
Other
8.82k stars 1.02k forks source link

fix(sec): upgrade cryptography to 3.3.2 #2317

Closed chncaption closed 1 year ago

chncaption commented 1 year ago

What happened?

There are 1 security vulnerabilities found in cryptography 1.3.4

What did I do?

Upgrade cryptography from 1.3.4 to 3.3.2 for vulnerability fix

What did you expect to happen?

Ideally, no insecure libs should be used.

The specification of the pull request

PR Specification from OSCS