From 8b293e7046874798d7b21ba676dc8c53386db840 Mon Sep 17 00:00:00 2001 From: Jake Jackson Date: Thu, 15 Aug 2024 13:32:26 -0400 Subject: [PATCH] update django to 4.2.15 to address multiple CVEs (#6636) --- requirements/requirements.in | 2 +- requirements/requirements.txt | 2 +- 2 files changed, 2 insertions(+), 2 deletions(-) diff --git a/requirements/requirements.in b/requirements/requirements.in index c92a2c87d3..995fa35f48 100644 --- a/requirements/requirements.in +++ b/requirements/requirements.in @@ -12,7 +12,7 @@ cryptography>=41.0.7 # CVE-2023-49083 Cython<3 # due to https://github.com/yaml/pyyaml/pull/702 daphne distro -django==4.2.10 # CVE-2024-24680 +django==4.2.15 # CVE-2024-41991 django-auth-ldap django-cors-headers django-crum diff --git a/requirements/requirements.txt b/requirements/requirements.txt index 4a907bd5d4..627fdc7834 100644 --- a/requirements/requirements.txt +++ b/requirements/requirements.txt @@ -124,7 +124,7 @@ deprecated==1.2.14 # opentelemetry-exporter-otlp-proto-http distro==1.9.0 # via -r /awx_devel/requirements/requirements.in -django==4.2.10 +django==4.2.15 # via # -r /awx_devel/requirements/requirements.in # channels