mirror of
https://github.com/ansible/awx.git
synced 2026-05-13 04:17:36 -02:30
Upgrade django and sqlparse to pickup CVE fixes (#6709)
This commit is contained in:
@@ -13,7 +13,7 @@ cryptography>=41.0.7 # CVE-2023-49083
|
|||||||
Cython<3 # due to https://github.com/yaml/pyyaml/pull/702
|
Cython<3 # due to https://github.com/yaml/pyyaml/pull/702
|
||||||
daphne
|
daphne
|
||||||
distro
|
distro
|
||||||
django==4.2.15 # CVE-2024-41991
|
django==4.2.16 # CVE-2024-45230
|
||||||
django-auth-ldap
|
django-auth-ldap
|
||||||
django-cors-headers
|
django-cors-headers
|
||||||
django-crum
|
django-crum
|
||||||
@@ -59,7 +59,7 @@ pyzstd # otel collector log file compression library
|
|||||||
receptorctl==1.4.8
|
receptorctl==1.4.8
|
||||||
social-auth-core == 4.5.4 # hard pinned due to resolver picking CVE version when uncapped
|
social-auth-core == 4.5.4 # hard pinned due to resolver picking CVE version when uncapped
|
||||||
social-auth-app-django==5.4.2 # see UPGRADE BLOCKERs
|
social-auth-app-django==5.4.2 # see UPGRADE BLOCKERs
|
||||||
sqlparse>=0.4.4 # Required by django https://github.com/ansible/awx/security/dependabot/96
|
sqlparse==0.5.0 # CVE-2024-4340
|
||||||
redis[hiredis]
|
redis[hiredis]
|
||||||
requests
|
requests
|
||||||
slack-sdk
|
slack-sdk
|
||||||
|
|||||||
@@ -125,7 +125,7 @@ deprecated==1.2.14
|
|||||||
# opentelemetry-exporter-otlp-proto-http
|
# opentelemetry-exporter-otlp-proto-http
|
||||||
distro==1.9.0
|
distro==1.9.0
|
||||||
# via -r /awx_devel/requirements/requirements.in
|
# via -r /awx_devel/requirements/requirements.in
|
||||||
django==4.2.15
|
django==4.2.16
|
||||||
# via
|
# via
|
||||||
# -r /awx_devel/requirements/requirements.in
|
# -r /awx_devel/requirements/requirements.in
|
||||||
# channels
|
# channels
|
||||||
@@ -508,7 +508,7 @@ social-auth-core==4.5.4
|
|||||||
# via
|
# via
|
||||||
# -r /awx_devel/requirements/requirements.in
|
# -r /awx_devel/requirements/requirements.in
|
||||||
# social-auth-app-django
|
# social-auth-app-django
|
||||||
sqlparse==0.4.4
|
sqlparse==0.5.0
|
||||||
# via
|
# via
|
||||||
# -r /awx_devel/requirements/requirements.in
|
# -r /awx_devel/requirements/requirements.in
|
||||||
# django
|
# django
|
||||||
|
|||||||
Reference in New Issue
Block a user