We read every piece of feedback, and take your input very seriously.
To see all available qualifiers, see our documentation.
Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.
By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.
Already on GitHub? Sign in to your account
We should update mako dependency to at least 1.2.2.
mako
1.2.2
CVE on mako https://nvd.nist.gov/vuln/detail/CVE-2022-40023.
This only affects documentation generation (poetry dev environment). It doesn't impact users of the library.
No response
Mako 1.2.2 only supports python >= 3.7. So we should pin mako as a dev dependency and add a note to remove it on v2.
The text was updated successfully, but these errors were encountered:
This is now released under 1.29.2 version!
Sorry, something went wrong.
No branches or pull requests
Summary
We should update
mako
dependency to at least1.2.2
.Why is this needed?
CVE on mako https://nvd.nist.gov/vuln/detail/CVE-2022-40023.
This only affects documentation generation (poetry dev environment). It doesn't impact users of the library.
Which area does this relate to?
No response
Solution
Mako 1.2.2 only supports python >= 3.7. So we should pin mako as a dev dependency and add a note to remove it on v2.
Acknowledgment
The text was updated successfully, but these errors were encountered: