Skip to content

Update requirements.txt#43

Closed
Geph wants to merge 1 commit into
masterfrom
security-fix-CVE-2024-6827
Closed

Update requirements.txt#43
Geph wants to merge 1 commit into
masterfrom
security-fix-CVE-2024-6827

Conversation

@Geph

@Geph Geph commented Apr 16, 2025

Copy link
Copy Markdown
Member

Gunicorn HTTP Request/Response Smuggling vulnerability CVE-2024-6827

Gunicorn HTTP Request/Response Smuggling vulnerability CVE-2024-6827
@Geph
Geph requested a review from jackah2 April 16, 2025 06:24
@Geph Geph assigned Geph and jackah2 Apr 16, 2025
@Geph

Geph commented Jul 22, 2026

Copy link
Copy Markdown
Member Author

Closing in favor of a proper gunicorn bump (>=22.0.0). 21.2.1 does not clear the open Dependabot alerts.

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

2 participants