-
Notifications
You must be signed in to change notification settings - Fork 23
New issue
Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.
By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.
Already on GitHub? Sign in to your account
GHSL-2021-111 #50
Comments
Is there any activity on this issue? dparse is used in flask-restx, which is currently failing ossaudit security check due to this project. (See python-restx/flask-restx#463.) |
@ptmcg this will be fixed in the next few days. Thanks @kevinbackhouse for the patience here, I'll address that before the advisory is published. |
@kevinbackhouse I've created the draft security advisory, and I invited you. |
I am closing this, thanks @kevinbackhouse! |
https://build.opensuse.org/request/show/1006957 by user mcepl + RBrownFactory - update to 0.6.1 * Use non-deprecated ConfiParser method - update to 0.6.0 * Fork from upstream dparse that is unresponsive * Rename package to dparse2 * Fix security issue for GHSL-2021-111pyupio/dparse#50 * Drop support for Python < 3.6 and add support for up to 3.10 * Drop support for updating requirements files * format code with black, sort imports
Hello,
The GitHub Security Lab team has found a potential vulnerability in your project. Please create a Security Advisory and invite me in to further disclose and discuss the vulnerability details and potential fix. Alternatively, please add a Security Policy containing a security email address to send the details to.
If you prefer to contact us by email, please reach out to [email protected] with reference to GHSL-2021-111.
Thank you,
Kevin Backhouse
GitHub Security Lab
The text was updated successfully, but these errors were encountered: