From 3227932095d8a927838e03bfb621abec838abfae Mon Sep 17 00:00:00 2001 From: brandon s allbery kf8nh Date: Fri, 17 May 2024 19:58:05 -0400 Subject: [PATCH] update jinja2 per CVE-2024-34064 --- doc/requirements.in | 4 ++-- doc/requirements.txt | 2 +- 2 files changed, 3 insertions(+), 3 deletions(-) diff --git a/doc/requirements.in b/doc/requirements.in index aae94ae6a2d..1c3ee5b9fd9 100644 --- a/doc/requirements.in +++ b/doc/requirements.in @@ -8,7 +8,7 @@ Pygments >= 2.7.4 certifi >= 2023.07.22 # CVE-2023-45803 urllib3 >= 2.0.7 -# CVE-2024-22195 -jinja2 == 3.1.3 +# CVE-2024-34064 +jinja2 >= 3.1.4 # CVE-2024-3651 idna >= 3.7 diff --git a/doc/requirements.txt b/doc/requirements.txt index ca9ca747a7b..1f2df5538b7 100644 --- a/doc/requirements.txt +++ b/doc/requirements.txt @@ -25,7 +25,7 @@ idna==3.7 # requests imagesize==1.4.1 # via sphinx -jinja2==3.1.3 +jinja2==3.1.4 # via # -r requirements.in # sphinx