Skip to content

Update bundled pip to address CVE-2023-5752 in cpython 3.9 & 3.10 #131860

@briensea

Description

@briensea

Update bundled pip to address CVE-2023-5752 in cpython 3.9 & 3.10

Description:

A security vulnerability, CVE-2023-5752, has been identified in older versions of pip. The versions of pip bundled with CPython 3.9 and 3.10 are affected.

This results in users being required to manually update pip to mitigate the security vulnerability.

CPython versions affected:

  • 3.9 (bundled pip version outdated)
  • 3.10 (bundled pip version outdated)

Operating systems tested on:

  • Linux

Linked PRs

Metadata

Metadata

Assignees

No one assigned

    Labels

    3.10only security fixes3.9only security fixesstdlibStandard Library Python modules in the Lib/ directorytopic-ensurepiptype-securityA security issue

    Projects

    No projects

    Milestone

    No milestone

    Relationships

    None yet

    Development

    No branches or pull requests

    Issue actions