Commit 3fdf8c4
deps: bump requests to >=2.32.4 for CVE patch
Dependabot flagged requests <2.32.4 for a .netrc credentials leak via
malicious URLs (GHSA / psf/requests#6965). Loosen the pin to >=2.32.4
so future security patches in the 2.32.x line are picked up
automatically.
Co-Authored-By: Claude Opus 4.6 (1M context) <noreply@anthropic.com>1 parent 09d1b7e commit 3fdf8c4
1 file changed
Lines changed: 1 addition & 1 deletion
| Original file line number | Diff line number | Diff line change | |
|---|---|---|---|
| |||
20 | 20 | | |
21 | 21 | | |
22 | 22 | | |
23 | | - | |
| 23 | + | |
24 | 24 | | |
25 | 25 | | |
26 | 26 | | |
| |||
0 commit comments