Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

[Backport 4.1.x] [Snyk] Security upgrade setuptools from 39.0.1 to 65.5.1 #10356

Merged
merged 1 commit into from
Nov 28, 2022

Conversation

github-actions[bot]
Copy link
Contributor

Backport 23b189a from #10300

The following vulnerabilities are fixed by pinning transitive dependencies:
- https://snyk.io/vuln/SNYK-PYTHON-SETUPTOOLS-3113904

Co-authored-by: snyk-bot <snyk-bot@snyk.io>
@cla-bot cla-bot bot added the cla-signed CLA Bot: community license agreement signed label Nov 28, 2022
@codecov
Copy link

codecov bot commented Nov 28, 2022

Codecov Report

Merging #10356 (c74695a) into 4.1.x (f0c3b7c) will decrease coverage by 0.00%.
The diff coverage is n/a.

Additional details and impacted files
@@            Coverage Diff             @@
##            4.1.x   #10356      +/-   ##
==========================================
- Coverage   61.92%   61.92%   -0.01%     
==========================================
  Files         827      827              
  Lines       50865    50865              
  Branches     6549     6549              
==========================================
- Hits        31497    31496       -1     
  Misses      17685    17685              
- Partials     1683     1684       +1     

@afabiani afabiani added dependencies Pull requests that update a dependency file security Pull requests that address a security vulnerability labels Nov 28, 2022
@afabiani afabiani merged commit 828aa71 into 4.1.x Nov 28, 2022
@afabiani afabiani deleted the backport-10300-to-4.1.x branch November 28, 2022 16:07
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
cla-signed CLA Bot: community license agreement signed dependencies Pull requests that update a dependency file security Pull requests that address a security vulnerability
Projects
None yet
Development

Successfully merging this pull request may close these issues.

1 participant