-
Notifications
You must be signed in to change notification settings - Fork 13.8k
New issue
Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.
By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.
Already on GitHub? Sign in to your account
chore: Bump redis to 4.5.4 #23845
chore: Bump redis to 4.5.4 #23845
Conversation
Codecov Report
@@ Coverage Diff @@
## master #23845 +/- ##
==========================================
- Coverage 68.11% 68.08% -0.03%
==========================================
Files 1938 1938
Lines 74958 74958
Branches 8141 8141
==========================================
- Hits 51055 51036 -19
- Misses 21824 21843 +19
Partials 2079 2079
Flags with carried forward coverage won't be shown. Click here to find out more. see 5 files with indirect coverage changes 📣 We’re building smart automated test selection to slash your CI/CD build times. Learn more |
Looks like there's some failed checks after bumping things |
There was a problem hiding this comment.
Choose a reason for hiding this comment
The reason will be displayed to describe this comment to others. Learn more.
LGTM
This reverts commit dab038c.
SUMMARY
Bump the
redis
lib from 3.5.3 to 4.5.4Bump the
psycopg2
lib to 2.9.6Use
CACHE_TYPE
-RedisCache
everywhereAlso fix the next CVE:
Dependency pypi:redis:3.5.3 is vulnerable
CVE-2023-28858 9.8 Improper Access Control vulnerability pending CVSS allocation
BEFORE/AFTER SCREENSHOTS OR ANIMATED GIF
TESTING INSTRUCTIONS
ADDITIONAL INFORMATION