Skip to content
This repository was archived by the owner on May 24, 2023. It is now read-only.

Update dependency requests to v2.22.0 #7

Open
wants to merge 1 commit into
base: master
Choose a base branch
from

Conversation

mend-for-github.aaakk.us.kg[bot]
Copy link

@mend-for-github.aaakk.us.kg mend-for-github.aaakk.us.kg bot commented Jan 15, 2023

This PR contains the following updates:

Package Update Change
requests (source, changelog) minor ==2.20.0 -> ==2.22.0

By merging this PR, the below vulnerabilities will be automatically resolved:

Severity CVSS Score CVE
High High 7.5 CVE-2021-33503
Medium Medium 6.5 CVE-2020-26137

Release Notes

psf/requests

v2.22.0

Compare Source

Dependencies

  • Requests now supports urllib3 v1.25.2.
    (note: 1.25.0 and 1.25.1 are incompatible)

Deprecations

  • Requests has officially stopped support for Python 3.4.

v2.21.0

Compare Source

Dependencies

  • Requests now supports idna v2.8.

v2.20.1

Compare Source

Bugfixes

  • Fixed bug with unintended Authorization header stripping for
    redirects using default ports (http/80, https/443).

  • If you want to rebase/retry this PR, check this box

@mend-for-github.aaakk.us.kg mend-for-github.aaakk.us.kg bot added the security fix Security fix generated by Mend label Jan 15, 2023
Sign up for free to subscribe to this conversation on GitHub. Already have an account? Sign in.
Labels
security fix Security fix generated by Mend
Projects
None yet
Development

Successfully merging this pull request may close these issues.

0 participants