Skip to content

Update Grpcio and Protobuf versions#533

Merged
yashvardhannanavati merged 1 commit intorelease-engineering:masterfrom
MichalZelenak:update_grpcio_and_protobuf
Jul 13, 2023
Merged

Update Grpcio and Protobuf versions#533
yashvardhannanavati merged 1 commit intorelease-engineering:masterfrom
MichalZelenak:update_grpcio_and_protobuf

Conversation

@MichalZelenak
Copy link
Copy Markdown
Contributor

@MichalZelenak MichalZelenak commented Jul 13, 2023

We need to update those two libraries, due to the discovery of CVE for current versions of Grpcio and Protobuf.

Only Grpcio and Protobuf versions are changed. Other libraries are just reordered automatically by pip-compile.

Grpc CVE: https://nvd.nist.gov/vuln/detail/CVE-2023-1428
Protobuf CVE: https://nvd.nist.gov/vuln/detail/CVE-2022-3509#range-8681514

@yashvardhannanavati yashvardhannanavati self-requested a review July 13, 2023 19:04
@yashvardhannanavati yashvardhannanavati merged commit ce60040 into release-engineering:master Jul 13, 2023
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

2 participants