From aa97700f8679f209adfefd41e109f706fd52406e Mon Sep 17 00:00:00 2001 From: Mack Halliday Date: Tue, 13 Aug 2024 12:15:55 -0400 Subject: [PATCH] HOTFIX - Ignore dependency vulnerability Gunicorn 22.0.0 (#1932) HOTFIX - Ignore dependency vulnerability Gunicorn 22.0.0 (#1932) --- Makefile | 3 ++- 1 file changed, 2 insertions(+), 1 deletion(-) diff --git a/Makefile b/Makefile index 9925799cac..315d8fd3a0 100644 --- a/Makefile +++ b/Makefile @@ -33,8 +33,9 @@ install-safety: check-dependencies: install-safety ## Scan dependencies for security vulnerabilities # 12 Dec 2023: 51668 is fixed with >= 2.0.0b1 of SQLAlchemy. Ongoing refactor to upgrade. # 6 June 2024: 70612 vulnerability found with jinja2 version 3.1.3 + # 14 Aug 2024: 71600 found in gunicorn version 22.0.0, will be addressed in regular dependencies update - safety check -r poetry.lock --full-report -i 51668,70612 + safety check -r poetry.lock --full-report -i 51668,70612,71600 .PHONY: help \