Skip to content

Commit 05a2f81

Browse files
authored
⬆️ 🔒️ Upgrades to overcome vulnerabilities (ITISFoundation#2663)
1 parent 528f502 commit 05a2f81

File tree

12 files changed

+85
-61
lines changed

12 files changed

+85
-61
lines changed

ci/helpers/requirements.txt

Lines changed: 36 additions & 27 deletions
Original file line numberDiff line numberDiff line change
@@ -2,73 +2,82 @@
22
# This file is autogenerated by pip-compile with python 3.8
33
# To update, run:
44
#
5-
# pip-compile
5+
# pip-compile requirements.in
66
#
7-
aiohttp==3.7.4.post0
7+
aiohttp==3.8.1
88
# via -r requirements.in
9+
aiosignal==1.2.0
10+
# via aiohttp
911
amqp==5.0.6
1012
# via kombu
11-
async-timeout==3.0.1
13+
anyio==3.4.0
14+
# via starlette
15+
async-timeout==4.0.1
1216
# via aiohttp
1317
attrs==21.2.0
1418
# via aiohttp
1519
billiard==3.6.4.0
1620
# via celery
17-
celery==5.1.2
21+
celery==5.2.1
1822
# via -r requirements.in
19-
certifi==2020.6.20
23+
certifi==2021.10.8
2024
# via requests
21-
chardet==3.0.4
25+
charset-normalizer==2.0.8
2226
# via
2327
# aiohttp
2428
# requests
25-
click==7.1.2
29+
click==8.0.3
2630
# via
2731
# celery
2832
# click-didyoumean
2933
# click-plugins
3034
# click-repl
31-
click-didyoumean==0.0.3
35+
click-didyoumean==0.3.0
3236
# via celery
3337
click-plugins==1.1.1
3438
# via celery
3539
click-repl==0.2.0
3640
# via celery
37-
docker==5.0.2
41+
docker==5.0.3
3842
# via -r requirements.in
39-
fastapi==0.68.1
43+
fastapi==0.70.0
4044
# via -r requirements.in
41-
idna==2.10
45+
frozenlist==1.2.0
46+
# via
47+
# aiohttp
48+
# aiosignal
49+
idna==3.3
4250
# via
51+
# anyio
4352
# requests
4453
# yarl
45-
kombu==5.1.0
54+
kombu==5.2.2
4655
# via celery
47-
multidict==5.1.0
56+
multidict==5.2.0
4857
# via
4958
# aiohttp
5059
# yarl
51-
prompt-toolkit==3.0.20
60+
prompt-toolkit==3.0.22
5261
# via click-repl
5362
pydantic==1.8.2
5463
# via fastapi
55-
pyjwt==1.7.1
64+
pyjwt==2.3.0
5665
# via -r requirements.in
57-
pytz==2020.1
66+
pytz==2021.3
5867
# via celery
59-
requests==2.24.0
68+
requests==2.26.0
6069
# via docker
61-
six==1.15.0
62-
# via
63-
# click-repl
64-
# websocket-client
65-
starlette==0.14.2
70+
six==1.16.0
71+
# via click-repl
72+
sniffio==1.2.0
73+
# via anyio
74+
starlette==0.16.0
6675
# via fastapi
67-
typing-extensions==3.10.0.2
76+
typing-extensions==4.0.0
6877
# via
69-
# aiohttp
78+
# async-timeout
7079
# pydantic
71-
urllib3==1.25.10
80+
urllib3==1.26.7
7281
# via requests
7382
vine==5.0.0
7483
# via
@@ -77,9 +86,9 @@ vine==5.0.0
7786
# kombu
7887
wcwidth==0.2.5
7988
# via prompt-toolkit
80-
websocket-client==0.57.0
89+
websocket-client==1.2.1
8190
# via docker
82-
yarl==1.6.3
91+
yarl==1.7.2
8392
# via aiohttp
8493

8594
# The following packages are considered to be unsafe in a requirements file:

services/catalog/requirements/_base.txt

Lines changed: 2 additions & 1 deletion
Original file line numberDiff line numberDiff line change
@@ -154,6 +154,7 @@ pyyaml==5.4.1
154154
# -c requirements/../../../packages/service-library/requirements/../../../requirements/constraints.txt
155155
# -c requirements/../../../packages/service-library/requirements/./../../../requirements/constraints.txt
156156
# -c requirements/../../../packages/service-library/requirements/./_base.in
157+
# -c requirements/../../../packages/service-library/requirements/./constraints.txt
157158
# -c requirements/../../../packages/settings-library/requirements/../../../requirements/constraints.txt
158159
# -c requirements/../../../requirements/constraints.txt
159160
# -r requirements/../../../packages/service-library/requirements/_base.in
@@ -210,7 +211,7 @@ typing-extensions==3.10.0.2
210211
# via pydantic
211212
ujson==4.0.2
212213
# via fastapi
213-
urllib3==1.26.5
214+
urllib3==1.26.7
214215
# via
215216
# -c requirements/../../../packages/models-library/requirements/../../../requirements/constraints.txt
216217
# -c requirements/../../../packages/postgres-database/requirements/../../../requirements/constraints.txt

services/catalog/requirements/_test.txt

Lines changed: 1 addition & 1 deletion
Original file line numberDiff line numberDiff line change
@@ -237,7 +237,7 @@ typing-extensions==3.10.0.2
237237
# aiohttp
238238
# astroid
239239
# pylint
240-
urllib3==1.26.5
240+
urllib3==1.26.7
241241
# via
242242
# -c requirements/../../../requirements/constraints.txt
243243
# -c requirements/_base.txt

services/dask-sidecar/requirements/_base.txt

Lines changed: 17 additions & 8 deletions
Original file line numberDiff line numberDiff line change
@@ -8,7 +8,7 @@ aiodocker==0.21.0
88
# via -r requirements/_base.in
99
aiofiles==0.7.0
1010
# via -r requirements/_base.in
11-
aiohttp==3.7.4.post0
11+
aiohttp==3.8.1
1212
# via
1313
# -c requirements/../../../packages/dask-task-models-library/requirements/../../../packages/models-library/requirements/../../../requirements/constraints.txt
1414
# -c requirements/../../../packages/dask-task-models-library/requirements/../../../requirements/constraints.txt
@@ -19,13 +19,15 @@ aiohttp==3.7.4.post0
1919
# -r requirements/_base.in
2020
# aiodocker
2121
# jupyter-server-proxy
22+
aiosignal==1.2.0
23+
# via aiohttp
2224
anyio==3.2.0
2325
# via jupyter-server
2426
argon2-cffi==20.1.0
2527
# via jupyter-server
2628
async-generator==1.10
2729
# via nbclient
28-
async-timeout==3.0.1
30+
async-timeout==4.0.1
2931
# via aiohttp
3032
attrs==20.2.0
3133
# via
@@ -42,10 +44,10 @@ certifi==2021.5.30
4244
# via requests
4345
cffi==1.14.5
4446
# via argon2-cffi
45-
chardet==3.0.4
46-
# via aiohttp
4747
charset-normalizer==2.0.6
48-
# via requests
48+
# via
49+
# aiohttp
50+
# requests
4951
click==7.1.2
5052
# via distributed
5153
cloudpickle==1.6.0
@@ -69,6 +71,10 @@ email-validator==1.1.1
6971
# via pydantic
7072
entrypoints==0.3
7173
# via nbconvert
74+
frozenlist==1.2.0
75+
# via
76+
# aiohttp
77+
# aiosignal
7278
fsspec==2021.10.1
7379
# via
7480
# -c requirements/constraints.txt
@@ -105,7 +111,9 @@ jinja2==2.11.3
105111
# jupyter-server
106112
# nbconvert
107113
jsonschema==3.2.0
108-
# via nbformat
114+
# via
115+
# -c requirements/../../../packages/service-library/requirements/./constraints.txt
116+
# nbformat
109117
jupyter-client==6.1.12
110118
# via
111119
# jupyter-server
@@ -213,6 +221,7 @@ pyyaml==5.4.1
213221
# -c requirements/../../../packages/dask-task-models-library/requirements/../../../requirements/constraints.txt
214222
# -c requirements/../../../packages/models-library/requirements/../../../requirements/constraints.txt
215223
# -c requirements/../../../packages/service-library/requirements/../../../requirements/constraints.txt
224+
# -c requirements/../../../packages/service-library/requirements/./constraints.txt
216225
# -c requirements/../../../packages/service-library/requirements/_base.in
217226
# -c requirements/../../../packages/settings-library/requirements/../../../requirements/constraints.txt
218227
# -c requirements/../../../requirements/constraints.txt
@@ -272,10 +281,10 @@ typing-extensions==3.10.0.2 ; python_version < "3.9"
272281
# via
273282
# -c requirements/../../../packages/dask-task-models-library/requirements/_base.in
274283
# aiodocker
275-
# aiohttp
284+
# async-timeout
276285
# bokeh
277286
# pydantic
278-
urllib3==1.26.5
287+
urllib3==1.26.7
279288
# via
280289
# -c requirements/../../../packages/dask-task-models-library/requirements/../../../packages/models-library/requirements/../../../requirements/constraints.txt
281290
# -c requirements/../../../packages/dask-task-models-library/requirements/../../../requirements/constraints.txt

services/dask-sidecar/requirements/_packages.txt

Lines changed: 1 addition & 0 deletions
Original file line numberDiff line numberDiff line change
@@ -107,6 +107,7 @@ pyyaml==5.4.1
107107
# -c requirements/../../../packages/dask-task-models-library/requirements/../../../requirements/constraints.txt
108108
# -c requirements/../../../packages/models-library/requirements/../../../requirements/constraints.txt
109109
# -c requirements/../../../packages/service-library/requirements/../../../requirements/constraints.txt
110+
# -c requirements/../../../packages/service-library/requirements/./constraints.txt
110111
# -c requirements/../../../requirements/constraints.txt
111112
# -c requirements/_base.txt
112113
# -r requirements/../../../packages/service-library/requirements/_base.in

services/dask-sidecar/requirements/_test.txt

Lines changed: 14 additions & 8 deletions
Original file line numberDiff line numberDiff line change
@@ -4,14 +4,18 @@
44
#
55
# pip-compile --output-file=requirements/_test.txt --strip-extras requirements/_test.in
66
#
7-
aiohttp==3.7.4.post0
7+
aiohttp==3.8.1
88
# via
99
# -c requirements/../../../requirements/constraints.txt
1010
# -c requirements/_base.txt
1111
# pytest-aiohttp
12+
aiosignal==1.2.0
13+
# via
14+
# -c requirements/_base.txt
15+
# aiohttp
1216
astroid==2.9.0
1317
# via pylint
14-
async-timeout==3.0.1
18+
async-timeout==4.0.1
1519
# via
1620
# -c requirements/_base.txt
1721
# aiohttp
@@ -29,13 +33,10 @@ cffi==1.14.5
2933
# via
3034
# -c requirements/_base.txt
3135
# cryptography
32-
chardet==3.0.4
33-
# via
34-
# -c requirements/_base.txt
35-
# aiohttp
3636
charset-normalizer==2.0.6
3737
# via
3838
# -c requirements/_base.txt
39+
# aiohttp
3940
# requests
4041
coverage==6.1.2
4142
# via
@@ -54,6 +55,11 @@ docopt==0.6.2
5455
# via coveralls
5556
faker==9.8.3
5657
# via -r requirements/_test.in
58+
frozenlist==1.2.0
59+
# via
60+
# -c requirements/_base.txt
61+
# aiohttp
62+
# aiosignal
5763
icdiff==2.0.4
5864
# via pytest-icdiff
5965
idna==2.10
@@ -172,10 +178,10 @@ typing-extensions==3.10.0.2 ; python_version < "3.9"
172178
# via
173179
# -c requirements/_base.txt
174180
# -c requirements/_packages.txt
175-
# aiohttp
176181
# astroid
182+
# async-timeout
177183
# pylint
178-
urllib3==1.26.5
184+
urllib3==1.26.7
179185
# via
180186
# -c requirements/../../../requirements/constraints.txt
181187
# -c requirements/_base.txt

services/datcore-adapter/requirements/_base.txt

Lines changed: 3 additions & 1 deletion
Original file line numberDiff line numberDiff line change
@@ -134,7 +134,9 @@ pyyaml==5.4.1
134134
# -c requirements/../../../packages/models-library/requirements/../../../requirements/constraints.txt
135135
# -c requirements/../../../packages/service-library/requirements/../../../requirements/constraints.txt
136136
# -c requirements/../../../packages/service-library/requirements/./../../../requirements/constraints.txt
137+
# -c requirements/../../../packages/service-library/requirements/././constraints.txt
137138
# -c requirements/../../../packages/service-library/requirements/./_base.in
139+
# -c requirements/../../../packages/service-library/requirements/./constraints.txt
138140
# -c requirements/../../../packages/settings-library/requirements/../../../requirements/constraints.txt
139141
# -c requirements/../../../requirements/constraints.txt
140142
# -r requirements/../../../packages/service-library/requirements/_base.in
@@ -184,7 +186,7 @@ typing-extensions==3.10.0.2
184186
# via
185187
# fastapi-pagination
186188
# pydantic
187-
urllib3==1.26.6
189+
urllib3==1.26.7
188190
# via
189191
# -c requirements/../../../packages/models-library/requirements/../../../requirements/constraints.txt
190192
# -c requirements/../../../packages/service-library/requirements/../../../requirements/constraints.txt

services/datcore-adapter/requirements/_test.txt

Lines changed: 1 addition & 1 deletion
Original file line numberDiff line numberDiff line change
@@ -159,7 +159,7 @@ typing-extensions==3.10.0.2
159159
# -c requirements/_base.txt
160160
# astroid
161161
# pylint
162-
urllib3==1.26.6
162+
urllib3==1.26.7
163163
# via
164164
# -c requirements/../../../requirements/constraints.txt
165165
# -c requirements/_base.txt

0 commit comments

Comments
 (0)