Skip to content

Commit

Permalink
Bump jinja and its dependencies' versions
Browse files Browse the repository at this point in the history
and add comment about xz-utils.
  • Loading branch information
lukaszstolarczuk committed Apr 3, 2024
1 parent a0f3c51 commit 2ad8110
Show file tree
Hide file tree
Showing 2 changed files with 3 additions and 2 deletions.
1 change: 1 addition & 0 deletions third_party/deps.yml
Original file line number Diff line number Diff line change
Expand Up @@ -33,6 +33,7 @@ dependencies:
- openssl=3.1.1
- pkg-config=0.29.2
- rhash=1.4.3
# don't upgrade xz utils due to CVE-2024-3094
- xz=5.2.6
- zlib=1.2.13
- zstd=1.5.2
4 changes: 2 additions & 2 deletions third_party/requirements.txt
Original file line number Diff line number Diff line change
Expand Up @@ -12,10 +12,10 @@ docutils==0.15.2
exhale==0.3.0
idna==2.8
imagesize==1.1.0
Jinja2==2.11.3
Jinja2==3.1.3
lxml==4.9.3
Mako==1.3.0
MarkupSafe==1.1.1
MarkupSafe==2.1.5
packaging==19.2
Pygments==2.17.2
pyparsing==2.4.5
Expand Down

0 comments on commit 2ad8110

Please sign in to comment.