Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

V1s1t0r999/main #50

Merged
merged 6 commits into from May 2, 2022
Merged

V1s1t0r999/main #50

merged 6 commits into from May 2, 2022

Conversation

baneetparmar
Copy link
Collaborator

No description provided.

@baneetparmar
Copy link
Collaborator Author

deps-report 🔍

Commit scanned: 130ea7d
ℹ️ Python version 3.9 is used by your project but the latest version is 3.10.

Vulnerable dependencies

2 dependencies have vulnerabilities 😱
Dependency Advisory Versions impacted
aiohttp (transitive) Aiohttp 3.8.0 adds validation of HTTP header keys and values to prevent header injection. aio-libs/aiohttp#4818 <3.8.0
reportlab (transitive) All versions of the package reportlab are vulnerable to Server-side Request Forgery (SSRF) via img tags. In order to reduce risk, use trustedSchemes & trustedHosts (see in Reportlab's documentation). https://www.reportlab.com/docs/reportlab-userguide.pdf >=0

Outdated dependencies

16 outdated dependencies found (including 6 outdated major versions)😢
Dependency Installed version Latest version
aiohttp (transitive) 3.7.4.post0 3.8.1
async-timeout (transitive) 3.0.1 4.0.2
black (dev) 21.9b0 22.1.0
charset-normalizer (transitive) 2.0.10 2.0.11
dnspython 2.1.0 2.2.0
jishaku 2.3.0 2.3.2
multidict (transitive) 5.2.0 6.0.2
pillow (transitive) 9.0.0 9.0.1
pymongo 3.12.0 4.0.1
pynacl (transitive) 1.4.0 1.5.0
regex (dev,transitive) 2021.11.10 2022.1.18
reportlab (transitive) 3.6.5 3.6.6
requests 2.26.0 2.27.1
svglib 1.1.0 1.2.1
tomli (dev,transitive) 1.2.3 2.0.0
youtube-dl (transitive) 2021.6.6 2021.12.17

Logs

@baneetparmar baneetparmar merged commit 7d62003 into main May 2, 2022
@baneetparmar baneetparmar deleted the v1s1t0r999/main branch May 2, 2022 03:43
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
None yet
Projects
None yet
Development

Successfully merging this pull request may close these issues.

None yet

2 participants