diff --git a/.devcontainer/cpp/requirements.txt b/.devcontainer/cpp/requirements.txt index 978270b6..0eeb346b 100644 --- a/.devcontainer/cpp/requirements.txt +++ b/.devcontainer/cpp/requirements.txt @@ -135,7 +135,7 @@ cmake==4.1.0 \ --hash=sha256:dab375932f5962e078da8cf76ca228c21bf4bea9ddeb1308e2b35797fa30f784 \ --hash=sha256:e77ac2554a7b8a94745add465413e3266b714766e9a5d22ac8e5b36a900a1136 \ --hash=sha256:f2eaa6f0a25e31fe09fb0b7f40fbf208eea5f1313093ff441ecfff7dc1b80adf - # via -r cpp/requirements.in + # via -r requirements.in colorama==0.4.6 \ --hash=sha256:08695f5cb7ed6e0531a20572697297273c47b8cae5a63ffc6d6ed5c201be6e44 \ --hash=sha256:4f1d9991f5acc0ca119f9d443620b77f9d6b33703e51011c16baf57afb285fc6 @@ -146,7 +146,7 @@ colorlog==6.8.2 \ # via gcovr conan==2.20.1 \ --hash=sha256:3d2eb33c78a8b2ea78592415dae3799074d90eb42bfcbe28bf6b6b7848e0fa03 - # via -r cpp/requirements.in + # via -r requirements.in distro==1.8.0 \ --hash=sha256:02e111d1dc6a50abb8eed6bf31c3e48ed8b0830d1ea2a1b78c61765c2513fdd8 \ --hash=sha256:99522ca3e365cac527b44bde033f64c6945d90eb9f769703caaec52b09bbd3ff @@ -158,7 +158,7 @@ fasteners==0.19 \ gcovr==8.4 \ --hash=sha256:1016d013d6c55225b1f716a4325e16ad5d626ff05b20b8a12d542e2d9a82ac21 \ --hash=sha256:8ea0cf23176b1029f28db679d712ca6477b3807097c3755c135bdc53b51cfa72 - # via -r cpp/requirements.in + # via -r requirements.in idna==3.10 \ --hash=sha256:12f65c9b470abda6dc35cf8e63cc574b1c52b11df2c86030af0ac09b01b13ea9 \ --hash=sha256:946d195a0d259cbba61165e88e65941f16e9b36ea6ddb97f00452bae8b1287d3 @@ -399,9 +399,9 @@ six==1.16.0 \ --hash=sha256:1e61c37477a1626458e36f7b1d82aa5c9b094fa4802892072e49de9c60c4c926 \ --hash=sha256:8abb2f1d86890a2dfb989f9a77cfcfd3e47c2a354b01111771326f8aa26e0254 # via python-dateutil -urllib3==1.26.20 \ - --hash=sha256:0ed14ccfbf1c30a9072c7ca157e4319b70d65f623e91e7b32fadb2853431016e \ - --hash=sha256:40c2dc0c681e47eb8f90e7e27bf6ff7df2e677421fd46756da1161c39ca70d32 +urllib3==2.5.0 \ + --hash=sha256:3fc47733c7e419d4bc3f6b3dc2b4f890bb743906a30d56ba4a5bfa4bbff92760 \ + --hash=sha256:e6b01673c0fa6a13e374b50871808eb3bf7046c4b125b216f6bf1cc604cff0dc # via # conan # requests diff --git a/.github/linters/.trivyignore.yml b/.github/linters/.trivyignore.yml index b79a6b06..93a22441 100644 --- a/.github/linters/.trivyignore.yml +++ b/.github/linters/.trivyignore.yml @@ -2,14 +2,3 @@ misconfigurations: - id: AVD-DS-0002 statement: We allow root access in our container that we use for development purposes (https://avd.aquasec.com/misconfig/dockerfile/general/avd-ds-0002/) -vulnerabilities: - - id: CVE-2025-50181 - paths: - - ".devcontainer/cpp/requirements.txt" - expired_at: 2025-10-01 - statement: This vulnerable dependency comes in via the Conan package, work is in-progress on supporting a non-vulnerable version (https://github.com/conan-io/conan/issues/13948) - - id: CVE-2025-50182 - paths: - - ".devcontainer/cpp/requirements.txt" - expired_at: 2025-10-01 - statement: This vulnerable dependency comes in via the Conan package, work is in-progress on supporting a non-vulnerable version (https://github.com/conan-io/conan/issues/13948)