Skip to content

[Snyk] Security upgrade python from 3.9 to 3.14.3#120

Open
samanyougarg wants to merge 1 commit intomainfrom
snyk-fix-0a7811f0a239fd10e13e958364c10879
Open

[Snyk] Security upgrade python from 3.9 to 3.14.3#120
samanyougarg wants to merge 1 commit intomainfrom
snyk-fix-0a7811f0a239fd10e13e958364c10879

Conversation

@samanyougarg
Copy link
Member

@samanyougarg samanyougarg commented Feb 8, 2026

snyk-top-banner

Snyk has created this PR to fix 2 vulnerabilities in the dockerfile dependencies of this project.

Keeping your Docker base image up-to-date means you’ll benefit from security fixes in the latest version of your chosen image.

Snyk changed the following file(s):

  • Dockerfile

We recommend upgrading to python:3.14.3, as this image has only 219 known vulnerabilities. To do this, merge this pull request, then verify your application still works as expected.

Vulnerabilities that will be fixed with an upgrade:

Issue Score
critical severity Heap-based Buffer Overflow
SNYK-DEBIAN13-IMAGEMAGICK-15044354
  786  
critical severity Heap-based Buffer Overflow
SNYK-DEBIAN13-IMAGEMAGICK-15044354
  786  
critical severity Heap-based Buffer Overflow
SNYK-DEBIAN13-IMAGEMAGICK-15044354
  786  
critical severity Release of Invalid Pointer or Reference
SNYK-DEBIAN13-IMAGEMAGICK-15044366
  786  
critical severity Release of Invalid Pointer or Reference
SNYK-DEBIAN13-IMAGEMAGICK-15044366
  786  

Important

  • Check the changes in this PR to ensure they won't cause issues with your project.
  • Max score is 1000. Note that the real score may have changed since the PR was raised.
  • This PR was automatically created by Snyk using the credentials of a real user.

Note: You are seeing this because you or someone else with access to this repository has authorized Snyk to open fix PRs.

For more information:
🧐 View latest project report
📜 Customise PR templates
🛠 Adjust project settings
📚 Read about Snyk's upgrade logic


Learn how to fix vulnerabilities with free interactive lessons:

🦉 Heap-based Buffer Overflow

Summary by CodeRabbit

  • Chore: Updated the Dockerfile to use a more recent Python version. The application now runs on python:3.14.3 instead of python:3.9, enhancing its compatibility with newer libraries and security patches. This change is not directly visible to end-users but ensures the application's stability and future-proofing.

@github-actions
Copy link

github-actions bot commented Feb 8, 2026

Image description CodeRabbit

Walkthrough

This change updates the Dockerfile to use a newer version of Python, specifically python:3.14.3 instead of python:3.9. This update ensures that our application is running on the latest stable version of Python, benefiting from all its recent improvements and security patches.

Changes

File Summary
Dockerfile Updated Dockerfile to use python:3.14.3 instead of python:3.9.

🐇💻

In the land of code, where the shadows lie,

A rabbit hopped forth, with a twinkle in its eye.

"A new Python version!" it did declare,

"Let's update our Docker, show the world we care!"

So hop along, friends, let's not be slow,

With python:3.14.3, off we go! 🚀


Uplevel your code reviews with CodeRabbit Pro

CodeRabbit Pro

If you like this project, please support us by purchasing the Pro version. The Pro version has advanced context, superior noise reduction and several proprietary improvements compared to the open source version. Moreover, CodeRabbit Pro is free for open source projects.

Copy link

@github-actions github-actions bot left a comment

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

Image description CodeRabbit

Commits Files that changed from the base of the PR and between be08e55 and b3e679d commits.
Files selected (1)
  • Dockerfile (1)
Files skipped from review due to trivial changes (1)
  • Dockerfile
Review comments generated (0)
  • Review: 0
  • LGTM: 0

Tips

Chat with Image description CodeRabbit Bot (@coderabbitai)

  • Reply on review comments left by this bot to ask follow-up questions. A review comment is a comment on a diff or a file.
  • Invite the bot into a review comment chain by tagging @coderabbitai in a reply.

Code suggestions

  • The bot may make code suggestions, but please review them carefully before committing since the line number ranges may be misaligned.
  • You can edit the comment made by the bot and manually tweak the suggestion if it is slightly off.

Pausing incremental reviews

  • Add @coderabbitai: ignore anywhere in the PR description to pause further reviews from the bot.

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

2 participants