Closed dependabot[bot] closed 6 months ago
ghcr.io/miracum/ahd2fhir:pr-170 (debian 12.5)
Package | ID | Severity | Installed Version | Fixed Version |
---|---|---|---|---|
libc6 |
CVE-2024-2961 | HIGH | 2.36-9+deb12u4 | 2.36-9+deb12u6 |
libc6 |
CVE-2024-33599 | HIGH | 2.36-9+deb12u4 | 2.36-9+deb12u7 |
libc6 |
CVE-2024-33600 | MEDIUM | 2.36-9+deb12u4 | 2.36-9+deb12u7 |
libc6 |
CVE-2024-33601 | MEDIUM | 2.36-9+deb12u4 | 2.36-9+deb12u7 |
libc6 |
CVE-2024-33602 | MEDIUM | 2.36-9+deb12u4 | 2.36-9+deb12u7 |
libc6 |
CVE-2010-4756 | LOW | 2.36-9+deb12u4 | |
libc6 |
CVE-2018-20796 | LOW | 2.36-9+deb12u4 | |
libc6 |
CVE-2019-1010022 | LOW | 2.36-9+deb12u4 | |
libc6 |
CVE-2019-1010023 | LOW | 2.36-9+deb12u4 | |
libc6 |
CVE-2019-1010024 | LOW | 2.36-9+deb12u4 | |
libc6 |
CVE-2019-1010025 | LOW | 2.36-9+deb12u4 | |
libc6 |
CVE-2019-9192 | LOW | 2.36-9+deb12u4 | |
libexpat1 |
CVE-2023-52425 | HIGH | 2.5.0-1 | |
libexpat1 |
CVE-2023-52426 | LOW | 2.5.0-1 | |
libexpat1 |
CVE-2024-28757 | LOW | 2.5.0-1 | |
libgcc-s1 |
CVE-2023-4039 | MEDIUM | 12.2.0-14 | |
libgcc-s1 |
CVE-2022-27943 | LOW | 12.2.0-14 | |
libgomp1 |
CVE-2023-4039 | MEDIUM | 12.2.0-14 | |
libgomp1 |
CVE-2022-27943 | LOW | 12.2.0-14 | |
libgssapi-krb5-2 |
CVE-2024-26462 | HIGH | 1.20.1-2+deb12u1 | |
libgssapi-krb5-2 |
CVE-2024-26458 | MEDIUM | 1.20.1-2+deb12u1 | |
libgssapi-krb5-2 |
CVE-2024-26461 | MEDIUM | 1.20.1-2+deb12u1 | |
libgssapi-krb5-2 |
CVE-2018-5709 | LOW | 1.20.1-2+deb12u1 | |
libk5crypto3 |
CVE-2024-26462 | HIGH | 1.20.1-2+deb12u1 | |
libk5crypto3 |
CVE-2024-26458 | MEDIUM | 1.20.1-2+deb12u1 | |
libk5crypto3 |
CVE-2024-26461 | MEDIUM | 1.20.1-2+deb12u1 | |
libk5crypto3 |
CVE-2018-5709 | LOW | 1.20.1-2+deb12u1 | |
libkrb5-3 |
CVE-2024-26462 | HIGH | 1.20.1-2+deb12u1 | |
libkrb5-3 |
CVE-2024-26458 | MEDIUM | 1.20.1-2+deb12u1 | |
libkrb5-3 |
CVE-2024-26461 | MEDIUM | 1.20.1-2+deb12u1 | |
libkrb5-3 |
CVE-2018-5709 | LOW | 1.20.1-2+deb12u1 | |
libkrb5support0 |
CVE-2024-26462 | HIGH | 1.20.1-2+deb12u1 | |
libkrb5support0 |
CVE-2024-26458 | MEDIUM | 1.20.1-2+deb12u1 | |
libkrb5support0 |
CVE-2024-26461 | MEDIUM | 1.20.1-2+deb12u1 | |
libkrb5support0 |
CVE-2018-5709 | LOW | 1.20.1-2+deb12u1 | |
libncursesw6 |
CVE-2023-50495 | MEDIUM | 6.4-4 | |
libncursesw6 |
CVE-2023-45918 | LOW | 6.4-4 | |
libpython3.11-minimal |
CVE-2023-24329 | HIGH | 3.11.2-6 | |
libpython3.11-minimal |
CVE-2023-41105 | HIGH | 3.11.2-6 | |
libpython3.11-minimal |
CVE-2023-6597 | HIGH | 3.11.2-6 | |
libpython3.11-minimal |
CVE-2023-27043 | MEDIUM | 3.11.2-6 | |
libpython3.11-minimal |
CVE-2023-40217 | MEDIUM | 3.11.2-6 | |
libpython3.11-minimal |
CVE-2024-0450 | MEDIUM | 3.11.2-6 | |
libpython3.11-stdlib |
CVE-2023-24329 | HIGH | 3.11.2-6 | |
libpython3.11-stdlib |
CVE-2023-41105 | HIGH | 3.11.2-6 | |
libpython3.11-stdlib |
CVE-2023-6597 | HIGH | 3.11.2-6 | |
libpython3.11-stdlib |
CVE-2023-27043 | MEDIUM | 3.11.2-6 | |
libpython3.11-stdlib |
CVE-2023-40217 | MEDIUM | 3.11.2-6 | |
libpython3.11-stdlib |
CVE-2024-0450 | MEDIUM | 3.11.2-6 | |
libsqlite3-0 |
CVE-2023-7104 | HIGH | 3.40.1-2 | |
libsqlite3-0 |
CVE-2024-0232 | MEDIUM | 3.40.1-2 | |
libsqlite3-0 |
CVE-2021-45346 | LOW | 3.40.1-2 | |
libssl3 |
CVE-2023-5678 | MEDIUM | 3.0.11-1~deb12u2 | |
libssl3 |
CVE-2023-6129 | MEDIUM | 3.0.11-1~deb12u2 | |
libssl3 |
CVE-2023-6237 | MEDIUM | 3.0.11-1~deb12u2 | |
libssl3 |
CVE-2024-0727 | MEDIUM | 3.0.11-1~deb12u2 | |
libssl3 |
CVE-2024-4603 | MEDIUM | 3.0.11-1~deb12u2 | |
libssl3 |
CVE-2007-6755 | LOW | 3.0.11-1~deb12u2 | |
libssl3 |
CVE-2010-0928 | LOW | 3.0.11-1~deb12u2 | |
libssl3 |
CVE-2024-2511 | LOW | 3.0.11-1~deb12u2 | |
libstdc++6 |
CVE-2023-4039 | MEDIUM | 12.2.0-14 | |
libstdc++6 |
CVE-2022-27943 | LOW | 12.2.0-14 | |
libtinfo6 |
CVE-2023-50495 | MEDIUM | 6.4-4 | |
libtinfo6 |
CVE-2023-45918 | LOW | 6.4-4 | |
libuuid1 |
CVE-2024-28085 | HIGH | 2.38.1-5+b1 | 2.38.1-5+deb12u1 |
libuuid1 |
CVE-2022-0563 | LOW | 2.38.1-5+b1 | |
python3.11-minimal |
CVE-2023-24329 | HIGH | 3.11.2-6 | |
python3.11-minimal |
CVE-2023-41105 | HIGH | 3.11.2-6 | |
python3.11-minimal |
CVE-2023-6597 | HIGH | 3.11.2-6 | |
python3.11-minimal |
CVE-2023-27043 | MEDIUM | 3.11.2-6 | |
python3.11-minimal |
CVE-2023-40217 | MEDIUM | 3.11.2-6 | |
python3.11-minimal |
CVE-2024-0450 | MEDIUM | 3.11.2-6 | |
zlib1g |
CVE-2023-45853 | CRITICAL | 1:1.2.13.dfsg-1 |
Python
Package | ID | Severity | Installed Version | Fixed Version |
---|---|---|---|---|
pip |
CVE-2023-5752 | MEDIUM | 23.2.1 | 23.3 |
Descriptor | Linter | Files | Fixed | Errors | Elapsed time |
---|---|---|---|---|---|
β ACTION | actionlint | 5 | 0 | 0.03s | |
β BASH | bash-exec | 2 | 0 | 0.04s | |
β BASH | shellcheck | 2 | 0 | 0.05s | |
β BASH | shfmt | 2 | 0 | 0.01s | |
β DOCKERFILE | hadolint | 2 | 0 | 0.2s | |
β JSON | eslint-plugin-jsonc | 17 | 0 | 2.78s | |
β JSON | jsonlint | 17 | 0 | 0.43s | |
β JSON | npm-package-json-lint | yes | no | 0.67s | |
β JSON | prettier | 17 | 0 | 2.42s | |
β MARKDOWN | markdownlint | 3 | 0 | 0.65s | |
β PYTHON | bandit | 31 | 0 | 1.71s | |
β PYTHON | black | 31 | 0 | 2.64s | |
β PYTHON | flake8 | 31 | 0 | 1.33s | |
β PYTHON | isort | 31 | 0 | 0.4s | |
β PYTHON | mypy | 31 | 0 | 10.03s | |
β PYTHON | pyright | 31 | 0 | 10.75s | |
β PYTHON | ruff | 31 | 0 | 0.05s | |
β REPOSITORY | checkov | yes | no | 16.18s | |
β REPOSITORY | gitleaks | yes | no | 0.12s | |
β REPOSITORY | git_diff | yes | no | 0.03s | |
β REPOSITORY | grype | yes | no | 16.41s | |
β REPOSITORY | kics | yes | no | 39.81s | |
β REPOSITORY | secretlint | yes | no | 1.18s | |
β REPOSITORY | syft | yes | no | 0.75s | |
β REPOSITORY | trivy | yes | 1 | 11.93s | |
β REPOSITORY | trivy-sbom | yes | no | 5.01s | |
β REPOSITORY | trufflehog | yes | no | 12.34s | |
β YAML | prettier | 15 | 0 | 1.09s | |
β YAML | yamllint | 15 | 0 | 0.52s |
See detailed report in MegaLinter reports
You could have same capabilities but better runtime performances if you request a new MegaLinter flavor.
Superseded by #172.
Bumps requests from 2.31.0 to 2.32.0.
Release notes
Sourced from requests's releases.
... (truncated)
Changelog
Sourced from requests's changelog.
Commits
d6ebc4a
v2.32.09a40d12
Avoid reloading root certificates to improve concurrent performance (#6667)0c030f7
Merge pull request #6702 from nateprewitt/no_char_detection555b870
Allow character detection dependencies to be optional in post-packaging stepsd6dded3
Merge pull request #6700 from franekmagiera/update-redirect-to-invalid-uri-testbf24b7d
Use an invalid URI that will not cause httpbin to throw 5002d5f547
Pin 3.8 and 3.9 runners back to macos-13 (#6688)f1bb07d
Merge pull request #6687 from psf/dependabot/github_actions/github/codeql-act...60047ad
Bump github/codeql-action from 3.24.0 to 3.25.031ebb81
Merge pull request #6682 from frenzymadness/pytest8Dependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting
@dependabot rebase
.Dependabot commands and options
You can trigger Dependabot actions by commenting on this PR: - `@dependabot rebase` will rebase this PR - `@dependabot recreate` will recreate this PR, overwriting any edits that have been made to it - `@dependabot merge` will merge this PR after your CI passes on it - `@dependabot squash and merge` will squash and merge this PR after your CI passes on it - `@dependabot cancel merge` will cancel a previously requested merge and block automerging - `@dependabot reopen` will reopen this PR if it is closed - `@dependabot close` will close this PR and stop Dependabot recreating it. You can achieve the same result by closing it manually - `@dependabot show