Skip to content
This repository has been archived by the owner on Feb 8, 2024. It is now read-only.

Update dependency PyYAML to v5.2 #1464

Closed

Conversation

mend-for-github-com[bot]
Copy link

@mend-for-github-com mend-for-github-com bot commented Jul 2, 2021

This PR contains the following updates:

Package Update Change
PyYAML (source) minor ==5.1.2 -> ==5.2

By merging this PR, the below issues will be automatically resolved and closed:

Severity CVSS Score CVE GitHub Issue
High 9.8 CVE-2019-20477 #809

Release Notes

yaml/pyyaml

v5.2

Compare Source


  • If you want to rebase/retry this PR, check this box.

@mend-for-github-com mend-for-github-com bot requested a review from 83bhp as a code owner July 2, 2021 13:57
@mend-for-github-com mend-for-github-com bot requested a review from a user July 2, 2021 13:57
@cla-bot
Copy link

cla-bot bot commented Jul 2, 2021

Thanks for your contribution!
The CLA bot has flagged your contribution as not having a Contributor License Agreement
in place. Note that this is not needed in the overwhelming majority of instances and this warning will usually be ignored.
The code reviewers will make a determination and may ask you to sign a CLA or may choose to ignore this warning.
More information about this can be found here.

@mend-for-github-com mend-for-github-com bot added the security fix Security fix generated by WhiteSource label Jul 2, 2021
@cortx-admin
Copy link

Can one of the admins verify this patch?

@mend-for-github-com mend-for-github-com bot force-pushed the whitesource-remediate/pyyaml-5.x branch from 9a138a5 to 0818d5c Compare July 5, 2021 09:50
@cla-bot
Copy link

cla-bot bot commented Jul 5, 2021

Thanks for your contribution!
The CLA bot has flagged your contribution as not having a Contributor License Agreement
in place. Note that this is not needed in the overwhelming majority of instances and this warning will usually be ignored.
The code reviewers will make a determination and may ask you to sign a CLA or may choose to ignore this warning.
More information about this can be found here.

@mend-for-github-com mend-for-github-com bot force-pushed the whitesource-remediate/pyyaml-5.x branch from 0818d5c to 2f92cf2 Compare July 6, 2021 05:22
@cla-bot
Copy link

cla-bot bot commented Jul 6, 2021

Thanks for your contribution!
The CLA bot has flagged your contribution as not having a Contributor License Agreement
in place. Note that this is not needed in the overwhelming majority of instances and this warning will usually be ignored.
The code reviewers will make a determination and may ask you to sign a CLA or may choose to ignore this warning.
More information about this can be found here.

@mend-for-github-com mend-for-github-com bot force-pushed the whitesource-remediate/pyyaml-5.x branch from 2f92cf2 to c24a60d Compare July 6, 2021 07:44
@cla-bot
Copy link

cla-bot bot commented Jul 6, 2021

Thanks for your contribution!
The CLA bot has flagged your contribution as not having a Contributor License Agreement
in place. Note that this is not needed in the overwhelming majority of instances and this warning will usually be ignored.
The code reviewers will make a determination and may ask you to sign a CLA or may choose to ignore this warning.
More information about this can be found here.

@mend-for-github-com mend-for-github-com bot force-pushed the whitesource-remediate/pyyaml-5.x branch from c24a60d to 4706bf3 Compare July 7, 2021 08:01
@cla-bot
Copy link

cla-bot bot commented Jul 7, 2021

Thanks for your contribution!
The CLA bot has flagged your contribution as not having a Contributor License Agreement
in place. Note that this is not needed in the overwhelming majority of instances and this warning will usually be ignored.
The code reviewers will make a determination and may ask you to sign a CLA or may choose to ignore this warning.
More information about this can be found here.

@mend-for-github-com mend-for-github-com bot force-pushed the whitesource-remediate/pyyaml-5.x branch from 4706bf3 to 667f35e Compare July 8, 2021 14:14
@cla-bot
Copy link

cla-bot bot commented Jul 8, 2021

Thanks for your contribution!
The CLA bot has flagged your contribution as not having a Contributor License Agreement
in place. Note that this is not needed in the overwhelming majority of instances and this warning will usually be ignored.
The code reviewers will make a determination and may ask you to sign a CLA or may choose to ignore this warning.
More information about this can be found here.

@mend-for-github-com mend-for-github-com bot force-pushed the whitesource-remediate/pyyaml-5.x branch from 667f35e to 33d3d5a Compare July 9, 2021 06:53
@cla-bot
Copy link

cla-bot bot commented Jul 9, 2021

Thanks for your contribution!
The CLA bot has flagged your contribution as not having a Contributor License Agreement
in place. Note that this is not needed in the overwhelming majority of instances and this warning will usually be ignored.
The code reviewers will make a determination and may ask you to sign a CLA or may choose to ignore this warning.
More information about this can be found here.

@mend-for-github-com mend-for-github-com bot force-pushed the whitesource-remediate/pyyaml-5.x branch from 33d3d5a to 0876f64 Compare July 9, 2021 09:45
@cla-bot
Copy link

cla-bot bot commented Jul 9, 2021

Thanks for your contribution!
The CLA bot has flagged your contribution as not having a Contributor License Agreement
in place. Note that this is not needed in the overwhelming majority of instances and this warning will usually be ignored.
The code reviewers will make a determination and may ask you to sign a CLA or may choose to ignore this warning.
More information about this can be found here.

@mend-for-github-com mend-for-github-com bot force-pushed the whitesource-remediate/pyyaml-5.x branch from 0876f64 to 13a1439 Compare July 9, 2021 13:26
@cla-bot
Copy link

cla-bot bot commented Jul 9, 2021

Thanks for your contribution!
The CLA bot has flagged your contribution as not having a Contributor License Agreement
in place. Note that this is not needed in the overwhelming majority of instances and this warning will usually be ignored.
The code reviewers will make a determination and may ask you to sign a CLA or may choose to ignore this warning.
More information about this can be found here.

@mend-for-github-com mend-for-github-com bot force-pushed the whitesource-remediate/pyyaml-5.x branch from 13a1439 to c112fa6 Compare July 13, 2021 16:36
@cla-bot
Copy link

cla-bot bot commented Jul 13, 2021

Thanks for your contribution!
The CLA bot has flagged your contribution as not having a Contributor License Agreement
in place. Note that this is not needed in the overwhelming majority of instances and this warning will usually be ignored.
The code reviewers will make a determination and may ask you to sign a CLA or may choose to ignore this warning.
More information about this can be found here.

@mend-for-github-com mend-for-github-com bot force-pushed the whitesource-remediate/pyyaml-5.x branch from c112fa6 to 3c4ac5d Compare July 20, 2021 04:56
@cla-bot
Copy link

cla-bot bot commented Jul 20, 2021

Thanks for your contribution!
The CLA bot has flagged your contribution as not having a Contributor License Agreement
in place. Note that this is not needed in the overwhelming majority of instances and this warning will usually be ignored.
The code reviewers will make a determination and may ask you to sign a CLA or may choose to ignore this warning.
More information about this can be found here.

@mend-for-github-com mend-for-github-com bot force-pushed the whitesource-remediate/pyyaml-5.x branch from 3c4ac5d to 2ee5136 Compare July 23, 2021 07:03
@cla-bot
Copy link

cla-bot bot commented Jul 23, 2021

Thanks for your contribution!
The CLA bot has flagged your contribution as not having a Contributor License Agreement
in place. Note that this is not needed in the overwhelming majority of instances and this warning will usually be ignored.
The code reviewers will make a determination and may ask you to sign a CLA or may choose to ignore this warning.
More information about this can be found here.

@mend-for-github-com mend-for-github-com bot force-pushed the whitesource-remediate/pyyaml-5.x branch from 2ee5136 to c15c8ae Compare July 23, 2021 07:17
@cla-bot
Copy link

cla-bot bot commented Jul 23, 2021

Thanks for your contribution!
The CLA bot has flagged your contribution as not having a Contributor License Agreement
in place. Note that this is not needed in the overwhelming majority of instances and this warning will usually be ignored.
The code reviewers will make a determination and may ask you to sign a CLA or may choose to ignore this warning.
More information about this can be found here.

@mend-for-github-com mend-for-github-com bot force-pushed the whitesource-remediate/pyyaml-5.x branch from c15c8ae to 6f9775d Compare July 23, 2021 09:16
@cla-bot
Copy link

cla-bot bot commented Jul 23, 2021

Thanks for your contribution!
The CLA bot has flagged your contribution as not having a Contributor License Agreement
in place. Note that this is not needed in the overwhelming majority of instances and this warning will usually be ignored.
The code reviewers will make a determination and may ask you to sign a CLA or may choose to ignore this warning.
More information about this can be found here.

@mend-for-github-com mend-for-github-com bot force-pushed the whitesource-remediate/pyyaml-5.x branch from 6f9775d to 3f6713e Compare July 23, 2021 12:34
@cla-bot
Copy link

cla-bot bot commented Jul 23, 2021

Thanks for your contribution!
The CLA bot has flagged your contribution as not having a Contributor License Agreement
in place. Note that this is not needed in the overwhelming majority of instances and this warning will usually be ignored.
The code reviewers will make a determination and may ask you to sign a CLA or may choose to ignore this warning.
More information about this can be found here.

@mend-for-github-com mend-for-github-com bot force-pushed the whitesource-remediate/pyyaml-5.x branch from 3f6713e to f4f6420 Compare July 23, 2021 18:16
@cla-bot
Copy link

cla-bot bot commented Jul 23, 2021

Thanks for your contribution!
The CLA bot has flagged your contribution as not having a Contributor License Agreement
in place. Note that this is not needed in the overwhelming majority of instances and this warning will usually be ignored.
The code reviewers will make a determination and may ask you to sign a CLA or may choose to ignore this warning.
More information about this can be found here.

@mend-for-github-com mend-for-github-com bot force-pushed the whitesource-remediate/pyyaml-5.x branch from f4f6420 to 141d305 Compare July 30, 2021 08:32
@cla-bot
Copy link

cla-bot bot commented Jul 30, 2021

Thanks for your contribution!
The CLA bot has flagged your contribution as not having a Contributor License Agreement
in place. Note that this is not needed in the overwhelming majority of instances and this warning will usually be ignored.
The code reviewers will make a determination and may ask you to sign a CLA or may choose to ignore this warning.
More information about this can be found here.

@mend-for-github-com mend-for-github-com bot force-pushed the whitesource-remediate/pyyaml-5.x branch from 141d305 to 9a2fbb5 Compare August 4, 2021 04:59
@cla-bot
Copy link

cla-bot bot commented Aug 4, 2021

Thanks for your contribution!
The CLA bot has flagged your contribution as not having a Contributor License Agreement
in place. Note that this is not needed in the overwhelming majority of instances and this warning will usually be ignored.
The code reviewers will make a determination and may ask you to sign a CLA or may choose to ignore this warning.
More information about this can be found here.

@mend-for-github-com mend-for-github-com bot force-pushed the whitesource-remediate/pyyaml-5.x branch from 9a2fbb5 to 4f4e691 Compare August 9, 2021 07:29
@cla-bot
Copy link

cla-bot bot commented Aug 9, 2021

Thanks for your contribution!
The CLA bot has flagged your contribution as not having a Contributor License Agreement
in place. Note that this is not needed in the overwhelming majority of instances and this warning will usually be ignored.
The code reviewers will make a determination and may ask you to sign a CLA or may choose to ignore this warning.
More information about this can be found here.

@mend-for-github-com mend-for-github-com bot force-pushed the whitesource-remediate/pyyaml-5.x branch from 4f4e691 to 7e10f53 Compare August 9, 2021 10:36
@cla-bot
Copy link

cla-bot bot commented Aug 9, 2021

Thanks for your contribution!
The CLA bot has flagged your contribution as not having a Contributor License Agreement
in place. Note that this is not needed in the overwhelming majority of instances and this warning will usually be ignored.
The code reviewers will make a determination and may ask you to sign a CLA or may choose to ignore this warning.
More information about this can be found here.

@mend-for-github-com mend-for-github-com bot force-pushed the whitesource-remediate/pyyaml-5.x branch from 7e10f53 to 4a55b2d Compare August 10, 2021 08:24
@cla-bot
Copy link

cla-bot bot commented Aug 10, 2021

Thanks for your contribution!
The CLA bot has flagged your contribution as not having a Contributor License Agreement
in place. Note that this is not needed in the overwhelming majority of instances and this warning will usually be ignored.
The code reviewers will make a determination and may ask you to sign a CLA or may choose to ignore this warning.
More information about this can be found here.

@mend-for-github-com mend-for-github-com bot force-pushed the whitesource-remediate/pyyaml-5.x branch from 4a55b2d to 68a2b6e Compare August 12, 2021 08:59
@cla-bot
Copy link

cla-bot bot commented Aug 12, 2021

Thanks for your contribution!
The CLA bot has flagged your contribution as not having a Contributor License Agreement
in place. Note that this is not needed in the overwhelming majority of instances and this warning will usually be ignored.
The code reviewers will make a determination and may ask you to sign a CLA or may choose to ignore this warning.
More information about this can be found here.

@mend-for-github-com mend-for-github-com bot force-pushed the whitesource-remediate/pyyaml-5.x branch from 68a2b6e to 4de5f91 Compare August 16, 2021 06:32
@cla-bot
Copy link

cla-bot bot commented Aug 16, 2021

Thanks for your contribution!
The CLA bot has flagged your contribution as not having a Contributor License Agreement
in place. Note that this is not needed in the overwhelming majority of instances and this warning will usually be ignored.
The code reviewers will make a determination and may ask you to sign a CLA or may choose to ignore this warning.
More information about this can be found here.

@stale
Copy link

stale bot commented Aug 23, 2021

This issue/pull request has been marked as needs attention as it has been left pending without new activity for 4 days. Tagging @83bhp @andkononykhin2 for appropriate assignment. Sorry for the delay & Thank you for contributing to CORTX. We will get back to you as soon as possible.

@83bhp 83bhp closed this Oct 10, 2021
@83bhp 83bhp deleted the whitesource-remediate/pyyaml-5.x branch October 10, 2021 13:36
Sign up for free to subscribe to this conversation on GitHub. Already have an account? Sign in.
Labels
needs-attention security fix Security fix generated by WhiteSource
Projects
None yet
Development

Successfully merging this pull request may close these issues.

None yet

2 participants