Skip to content
This repository has been archived by the owner on May 24, 2023. It is now read-only.

Update dependency PyYAML to v5.3.1 #6

Open
wants to merge 1 commit into
base: master
Choose a base branch
from

Conversation

mend-for-github.aaakk.us.kg[bot]
Copy link

@mend-for-github.aaakk.us.kg mend-for-github.aaakk.us.kg bot commented Jan 15, 2023

This PR contains the following updates:

Package Update Change
PyYAML (source) minor ==5.1 -> ==5.3.1

By merging this PR, the below vulnerabilities will be automatically resolved:

Severity CVSS Score CVE
High High 9.8 CVE-2019-20477
High High 9.8 CVE-2020-14343
High High 9.8 CVE-2020-1747

Release Notes

yaml/pyyaml

v5.3.1

Compare Source

v5.3

Compare Source

v5.2

Compare Source

v5.1.2

Compare Source

  • Re-release of 5.1 with regenerated Cython sources to build properly for Python 3.8b2+

v5.1.1

Compare Source

  • Re-release of 5.1 with regenerated Cython sources to build properly for Python 3.8b1

  • If you want to rebase/retry this PR, check this box

@mend-for-github.aaakk.us.kg mend-for-github.aaakk.us.kg bot added the security fix Security fix generated by Mend label Jan 15, 2023
@mend-for-github.aaakk.us.kg mend-for-github.aaakk.us.kg bot changed the title Update dependency PyYAML to v5.3.1 Update dependency PyYAML to v5.3.1 - autoclosed Jan 19, 2023
@mend-for-github.aaakk.us.kg mend-for-github.aaakk.us.kg bot deleted the whitesource-remediate/pyyaml-5.x branch January 19, 2023 06:15
@mend-for-github.aaakk.us.kg mend-for-github.aaakk.us.kg bot changed the title Update dependency PyYAML to v5.3.1 - autoclosed Update dependency PyYAML to v5.3.1 Jan 22, 2023
@mend-for-github.aaakk.us.kg mend-for-github.aaakk.us.kg bot restored the whitesource-remediate/pyyaml-5.x branch January 22, 2023 19:43
@mend-for-github.aaakk.us.kg mend-for-github.aaakk.us.kg bot changed the title Update dependency PyYAML to v5.3.1 Update dependency PyYAML to v5.3.1 - autoclosed Jan 24, 2023
@mend-for-github.aaakk.us.kg mend-for-github.aaakk.us.kg bot deleted the whitesource-remediate/pyyaml-5.x branch January 24, 2023 01:58
@mend-for-github.aaakk.us.kg mend-for-github.aaakk.us.kg bot changed the title Update dependency PyYAML to v5.3.1 - autoclosed Update dependency PyYAML to v5.3.1 Jan 25, 2023
@mend-for-github.aaakk.us.kg mend-for-github.aaakk.us.kg bot restored the whitesource-remediate/pyyaml-5.x branch January 25, 2023 06:08
@mend-for-github.aaakk.us.kg mend-for-github.aaakk.us.kg bot changed the title Update dependency PyYAML to v5.3.1 Update dependency PyYAML to v5.3.1 - autoclosed Jan 26, 2023
@mend-for-github.aaakk.us.kg mend-for-github.aaakk.us.kg bot deleted the whitesource-remediate/pyyaml-5.x branch January 26, 2023 07:02
@mend-for-github.aaakk.us.kg mend-for-github.aaakk.us.kg bot changed the title Update dependency PyYAML to v5.3.1 - autoclosed Update dependency PyYAML to v5.3.1 Jan 27, 2023
@mend-for-github.aaakk.us.kg mend-for-github.aaakk.us.kg bot restored the whitesource-remediate/pyyaml-5.x branch January 27, 2023 14:13
@mend-for-github.aaakk.us.kg mend-for-github.aaakk.us.kg bot changed the title Update dependency PyYAML to v5.3.1 Update dependency PyYAML to v5.3.1 - autoclosed Jan 28, 2023
@mend-for-github.aaakk.us.kg mend-for-github.aaakk.us.kg bot deleted the whitesource-remediate/pyyaml-5.x branch January 28, 2023 20:18
@mend-for-github.aaakk.us.kg mend-for-github.aaakk.us.kg bot changed the title Update dependency PyYAML to v5.3.1 - autoclosed Update dependency PyYAML to v5.3.1 Jan 31, 2023
@mend-for-github.aaakk.us.kg mend-for-github.aaakk.us.kg bot restored the whitesource-remediate/pyyaml-5.x branch January 31, 2023 02:54
@mend-for-github.aaakk.us.kg mend-for-github.aaakk.us.kg bot changed the title Update dependency PyYAML to v5.3.1 Update dependency PyYAML to v5.3.1 - autoclosed Feb 1, 2023
@mend-for-github.aaakk.us.kg mend-for-github.aaakk.us.kg bot deleted the whitesource-remediate/pyyaml-5.x branch February 1, 2023 04:48
@mend-for-github.aaakk.us.kg mend-for-github.aaakk.us.kg bot changed the title Update dependency PyYAML to v5.3.1 - autoclosed Update dependency PyYAML to v5.3.1 Feb 3, 2023
@mend-for-github.aaakk.us.kg mend-for-github.aaakk.us.kg bot deleted the whitesource-remediate/pyyaml-5.x branch February 7, 2023 00:24
@mend-for-github.aaakk.us.kg mend-for-github.aaakk.us.kg bot changed the title Update dependency PyYAML to v5.3.1 - autoclosed Update dependency PyYAML to v5.3.1 Feb 8, 2023
@mend-for-github.aaakk.us.kg mend-for-github.aaakk.us.kg bot restored the whitesource-remediate/pyyaml-5.x branch February 8, 2023 02:19
@mend-for-github.aaakk.us.kg mend-for-github.aaakk.us.kg bot changed the title Update dependency PyYAML to v5.3.1 Update dependency PyYAML to v5.3.1 - autoclosed Feb 9, 2023
@mend-for-github.aaakk.us.kg mend-for-github.aaakk.us.kg bot deleted the whitesource-remediate/pyyaml-5.x branch February 9, 2023 04:50
@mend-for-github.aaakk.us.kg mend-for-github.aaakk.us.kg bot changed the title Update dependency PyYAML to v5.3.1 - autoclosed Update dependency PyYAML to v5.3.1 Feb 10, 2023
@mend-for-github.aaakk.us.kg mend-for-github.aaakk.us.kg bot restored the whitesource-remediate/pyyaml-5.x branch February 10, 2023 06:01
@mend-for-github.aaakk.us.kg mend-for-github.aaakk.us.kg bot changed the title Update dependency PyYAML to v5.3.1 Update dependency PyYAML to v5.3.1 - autoclosed Feb 11, 2023
@mend-for-github.aaakk.us.kg mend-for-github.aaakk.us.kg bot deleted the whitesource-remediate/pyyaml-5.x branch February 11, 2023 06:11
@mend-for-github.aaakk.us.kg mend-for-github.aaakk.us.kg bot changed the title Update dependency PyYAML to v5.3.1 - autoclosed Update dependency PyYAML to v5.3.1 Feb 13, 2023
@mend-for-github.aaakk.us.kg mend-for-github.aaakk.us.kg bot changed the title Update dependency PyYAML to v5.3.1 Update dependency PyYAML to v5.3.1 - autoclosed Feb 14, 2023
@mend-for-github.aaakk.us.kg mend-for-github.aaakk.us.kg bot changed the title Update dependency PyYAML to v5.3.1 - autoclosed Update dependency PyYAML to v5.3.1 Feb 16, 2023
@mend-for-github.aaakk.us.kg mend-for-github.aaakk.us.kg bot changed the title Update dependency PyYAML to v5.3.1 Update dependency PyYAML to v5.3.1 - autoclosed Feb 17, 2023
@mend-for-github.aaakk.us.kg mend-for-github.aaakk.us.kg bot changed the title Update dependency PyYAML to v5.3.1 - autoclosed Update dependency PyYAML to v5.3.1 Feb 21, 2023
@mend-for-github.aaakk.us.kg mend-for-github.aaakk.us.kg bot restored the whitesource-remediate/pyyaml-5.x branch February 21, 2023 20:36
@mend-for-github.aaakk.us.kg mend-for-github.aaakk.us.kg bot changed the title Update dependency PyYAML to v5.3.1 Update dependency PyYAML to v5.3.1 - autoclosed Feb 24, 2023
@mend-for-github.aaakk.us.kg mend-for-github.aaakk.us.kg bot deleted the whitesource-remediate/pyyaml-5.x branch February 24, 2023 02:31
@mend-for-github.aaakk.us.kg mend-for-github.aaakk.us.kg bot changed the title Update dependency PyYAML to v5.3.1 - autoclosed Update dependency PyYAML to v5.3.1 Feb 26, 2023
@mend-for-github.aaakk.us.kg mend-for-github.aaakk.us.kg bot restored the whitesource-remediate/pyyaml-5.x branch February 26, 2023 12:49
Sign up for free to subscribe to this conversation on GitHub. Already have an account? Sign in.
Labels
security fix Security fix generated by Mend
Projects
None yet
Development

Successfully merging this pull request may close these issues.

0 participants