Skip to content

Address OpenSSL CVE-2025-15467 vulnerability#4426

Merged
lorenzejay merged 2 commits intomainfrom
fix/security-vulnerability-bumps
Feb 10, 2026
Merged

Address OpenSSL CVE-2025-15467 vulnerability#4426
lorenzejay merged 2 commits intomainfrom
fix/security-vulnerability-bumps

Conversation

@lucasgomide
Copy link
Copy Markdown
Contributor

@lucasgomide lucasgomide commented Feb 9, 2026

This PR address OpenSSL (CVE-2025-15467) vulnerability

  • Bump regex from 2024.9.11 to 2026.1.15
  • Bump mcp from 1.23.1 to 1.26.0

I'll push another one resolving the litellm vulnerability

Address security vulnerability flagged in regex==2024.9.11
@lucasgomide lucasgomide changed the title Fix/security vulnerability bumps Address OpenSSL CVE-2025-15467 vulnerability Feb 9, 2026
@lucasgomide lucasgomide marked this pull request as draft February 10, 2026 17:33
@lucasgomide lucasgomide marked this pull request as ready for review February 10, 2026 17:33
Address security vulnerability flagged in mcp==1.16.0 (resolved to 1.23.3)
@lucasgomide lucasgomide force-pushed the fix/security-vulnerability-bumps branch from f141c1d to 48e02fe Compare February 10, 2026 17:34
@lorenzejay lorenzejay merged commit a3bee66 into main Feb 10, 2026
44 checks passed
@lorenzejay lorenzejay deleted the fix/security-vulnerability-bumps branch February 10, 2026 17:39
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

2 participants