From 69898b1b8e6977cb4f3545024753d02f4ec62a0d Mon Sep 17 00:00:00 2001 From: Jimmy Conner Date: Mon, 16 Sep 2024 20:04:57 -0500 Subject: [PATCH] Upgrade django to resolve 2 CVEs CVE-2024-45231 CVE-2024-45230 --- requirements/requirements.in | 2 +- requirements/requirements.txt | 2 +- 2 files changed, 2 insertions(+), 2 deletions(-) diff --git a/requirements/requirements.in b/requirements/requirements.in index 245efc6..5bed4a6 100644 --- a/requirements/requirements.in +++ b/requirements/requirements.in @@ -12,7 +12,7 @@ cryptography>=43.0.1 # GHSA-h4gh-qq45-vh27 Cython<3 # this is needed as a build dependency, one day we may have separated build deps daphne distro -django==4.2.15 # CVE-2024-42005 +django==4.2.16 # CVE-2024-45231 django-auth-ldap django-cors-headers django-crum diff --git a/requirements/requirements.txt b/requirements/requirements.txt index 7fc978d..acac1b8 100644 --- a/requirements/requirements.txt +++ b/requirements/requirements.txt @@ -94,7 +94,7 @@ defusedxml==0.7.1 # social-auth-core distro==1.8.0 # via -r /awx_devel/requirements/requirements.in -django==4.2.15 +django==4.2.16 # via # -r /awx_devel/requirements/requirements.in # channels