polkascan / py-scale-codec

Python SCALE-Codec
https://polkascan.github.io/py-scale-codec/
Apache License 2.0
54 stars 52 forks source link

Py library vulnerability (CVE-2022-42969) #118

Closed thewhaleking closed 4 months ago

thewhaleking commented 4 months ago

Noticed a high vulnerability CVE for one of the requirements of this project, the py library: https://github.com/pytest-dev/py

Though it's listed in the requirements, a quick glance didn't show it's actually being used.

arjanz commented 4 months ago

It is not being used when installing the library via PyPI (see dependencies), but I guess it was used at one point for pytest, I will remove it anyway from the requirements.txt.

Thanks for pointing this out!