From 6bb99025885be0dc122dd556619295c76912d3db Mon Sep 17 00:00:00 2001 From: Ryan Petrello Date: Thu, 2 May 2019 11:11:06 -0400 Subject: [PATCH] pin urllib3 to 1.24.3 to address CVE-2019-9740 --- requirements/requirements.txt | 2 +- requirements/requirements_ansible.txt | 2 +- 2 files changed, 2 insertions(+), 2 deletions(-) diff --git a/requirements/requirements.txt b/requirements/requirements.txt index 6d9c19694a..cf2bb212a1 100644 --- a/requirements/requirements.txt +++ b/requirements/requirements.txt @@ -112,7 +112,7 @@ twilio==6.10.4 twisted==18.9.0 # via daphne txaio==18.8.1 # via autobahn typing==3.6.6 # via django-extensions -urllib3==1.24.1 # via requests +urllib3==1.24.3 # via requests uwsgi==2.0.17 uwsgitop==0.10.0 vine==1.2.0 # via amqp diff --git a/requirements/requirements_ansible.txt b/requirements/requirements_ansible.txt index 0be2c2861f..f3c638aa60 100644 --- a/requirements/requirements_ansible.txt +++ b/requirements/requirements_ansible.txt @@ -115,7 +115,7 @@ selectors2==2.0.1 # via ncclient six==1.11.0 # via azure-cli-core, bcrypt, cryptography, google-auth, isodate, keystoneauth1, knack, munch, ncclient, ntlm-auth, openstacksdk, ovirt-engine-sdk-python, packaging, pynacl, pyopenssl, python-dateutil, pyvmomi, pywinrm, stevedore stevedore==1.28.0 # via keystoneauth1 tabulate==0.7.7 # via azure-cli-core, knack -urllib3==1.24 # via requests +urllib3==1.24.3 # via requests wheel==0.30.0 # via azure-cli-core xmltodict==0.11.0 # via pywinrm