Skip to content

fix: bump dependencies#186

Merged
uwwint merged 2 commits intomainfrom
security/bump-versions
Feb 27, 2026
Merged

fix: bump dependencies#186
uwwint merged 2 commits intomainfrom
security/bump-versions

Conversation

@uwwint
Copy link
Collaborator

@uwwint uwwint commented Feb 26, 2026

Description

This addresses the open security issues in our dependencies.

Changes

bump cryptography
bump python-ecdsa
bump werkzeug

Checklist

  • I have commented my code, particularly in hard-to-understand areas
  • I have added unit / integration tests that prove my fix is effective or that my feature works
  • I have run all tests locally and they pass
  • I have updated the documentation (if applicable)
  • For any new secrets, I have updated the shared spreadsheet and the GitHub Secrets.

How to Test Manually (if necessary)

Copy link
Collaborator

@marius-mather marius-mather left a comment

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

can we please add comments explaining these are being pinned for security upgrades. nice to know if they're directly required for the project or not

@uwwint uwwint requested a review from marius-mather February 27, 2026 01:34
Copy link
Collaborator

@marius-mather marius-mather left a comment

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

good to go

@uwwint uwwint merged commit de44163 into main Feb 27, 2026
5 checks passed
@uwwint uwwint deleted the security/bump-versions branch February 27, 2026 02:52
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

2 participants