Skip to content

Commit c7716d2

Browse files
authored
fix(requirements): Increase minimum required urllib3 version (#349)
This commit increases the minimum required urllib3 version to 1.26.5, which is currently the lowes, without known CVE vulnerability. For further info on the particular vulnerability see: https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2021-33503
1 parent 4964a8d commit c7716d2

8 files changed

+8
-8
lines changed

setup.py

Lines changed: 1 addition & 1 deletion
Original file line numberDiff line numberDiff line change
@@ -66,7 +66,7 @@ def check_setuptools():
6666
'opentracing>=2.3.0',
6767
'requests>=2.6.0',
6868
'six>=1.12.0',
69-
'urllib3<1.27,>=1.21.1'],
69+
'urllib3<1.27,>=1.26.5'],
7070
entry_points={
7171
'instana': ['string = instana:load'],
7272
'flask': ['string = instana:load'], # deprecated: use same as 'instana'

tests/requirements-27.txt

Lines changed: 1 addition & 1 deletion
Original file line numberDiff line numberDiff line change
@@ -32,4 +32,4 @@ spyne>=2.9,<=2.12.14
3232
suds-jurko>=0.6
3333
tornado>=4.5.3,<6.0
3434
uvicorn>=0.12.2;python_version>="3.6"
35-
urllib3[secure]!=1.25.0,!=1.25.1,<1.27,>=1.21.1
35+
urllib3[secure]<1.27,>=1.26.5

tests/requirements-310.txt

Lines changed: 1 addition & 1 deletion
Original file line numberDiff line numberDiff line change
@@ -41,4 +41,4 @@ spyne>=2.13.16
4141
suds-jurko>=0.6
4242

4343
uvicorn>=0.13.4
44-
urllib3[secure]!=1.25.0,!=1.25.1,<1.27,>=1.21.1
44+
urllib3[secure]<1.27,>=1.26.5

tests/requirements-asynqp-legacy-flask-markupsafe.txt

Lines changed: 1 addition & 1 deletion
Original file line numberDiff line numberDiff line change
@@ -13,4 +13,4 @@ markupsafe==2.0.1
1313
mock>=2.0.0
1414
nose>=1.0
1515
pytest>=4.6
16-
urllib3[secure]!=1.25.0,!=1.25.1,<1.27,>=1.21.1
16+
urllib3[secure]<1.27,>=1.26.5

tests/requirements-asynqp.txt

Lines changed: 1 addition & 1 deletion
Original file line numberDiff line numberDiff line change
@@ -4,4 +4,4 @@ flask>=2.0.0,<3.0.0
44
mock>=2.0.0
55
nose>=1.0
66
pytest>=4.6
7-
urllib3[secure]!=1.25.0,!=1.25.1,<1.27,>=1.21.1
7+
urllib3[secure]<1.27,>=1.26.5

tests/requirements-cassandra.txt

Lines changed: 1 addition & 1 deletion
Original file line numberDiff line numberDiff line change
@@ -2,4 +2,4 @@ cassandra-driver>=3.20.2
22
mock>=2.0.0
33
nose>=1.0
44
pytest>=4.6
5-
urllib3[secure]!=1.25.0,!=1.25.1,<1.27,>=1.21.1
5+
urllib3[secure]<1.27,>=1.26.5

tests/requirements-gevent.txt

Lines changed: 1 addition & 1 deletion
Original file line numberDiff line numberDiff line change
@@ -4,4 +4,4 @@ mock>=2.0.0
44
nose>=1.0
55
pyramid>=1.2
66
pytest>=4.6
7-
urllib3[secure]!=1.25.0,!=1.25.1,<1.27,>=1.21.1
7+
urllib3[secure]<1.27,>=1.26.5

tests/requirements.txt

Lines changed: 1 addition & 1 deletion
Original file line numberDiff line numberDiff line change
@@ -29,4 +29,4 @@ spyne>=2.13.16
2929
suds-jurko>=0.6
3030
tornado>=4.5.3,<6.0
3131
uvicorn>=0.13.4
32-
urllib3[secure]!=1.25.0,!=1.25.1,<1.27,>=1.21.1
32+
urllib3[secure]<1.27,>=1.26.5

0 commit comments

Comments
 (0)