Skip to content

[Security] Update sqlalchemy_utils #523

@fmigneault

Description

@fmigneault

Dependency sqlalchemy_utils<0.38 is reported as vulnerability by safety (ignored via pyup: ignore in requirements).
There is however no version (at this date) that resolves the reported vulnerability.

+==============================================================================+

 REPORT 

  Safety v2.1.1 is scanning for Vulnerabilities...
  Scanning dependencies in your files:

  -> /home/francis/dev/magpie/requirements.txt
  -> /home/francis/dev/magpie/requirements-dev.txt
  -> /home/francis/dev/magpie/requirements-doc.txt
  -> /home/francis/dev/magpie/requirements-sys.txt

  Using non-commercial database
  Found and scanned 14 packages
  Timestamp 2022-09-02 15:52:16
  0 vulnerabilities found
  1 vulnerability ignored

+==============================================================================+
 VULNERABILITIES FOUND 
+==============================================================================+

-> Vulnerability found in sqlalchemy-utils version 0.37.9
   Vulnerability ID: 42194
   This vulnerability is being ignored.
   For more information, please visit
   https://pyup.io/vulnerabilities/PVE-2021-42194/42194/

 Scan was completed. 0 vulnerabilities were found. 1 vulnerability from 1 
 package was ignored. 

+==============================================================================+

Metadata

Metadata

Assignees

No one assigned

    Labels

    securityNew security features or failing AuthN/AuthZ conditions

    Type

    No type

    Projects

    No projects

    Milestone

    No milestone

    Relationships

    None yet

    Development

    No branches or pull requests

    Issue actions