Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

Update README.md and update documentation #1533

Draft
wants to merge 51 commits into
base: develop
Choose a base branch
from

Conversation

thomasyu888
Copy link
Member

@thomasyu888 thomasyu888 commented Nov 1, 2024

  • Testing code owners and updating attribution
  • First iteration schematic refresh

Depends on #1530

@thomasyu888 thomasyu888 requested a review from a team as a code owner November 1, 2024 17:31
README.md Outdated Show resolved Hide resolved
@thomasyu888 thomasyu888 changed the base branch from develop to fds-2449-fix-rtd November 2, 2024 03:03
poetry.lock Outdated
@@ -1,9 +1,10 @@
# This file is automatically @generated by Poetry 1.8.3 and should not be changed by hand.
# This file is automatically @generated by Poetry and should not be changed by hand.

Check failure

Code scanning / Trivy

python-cryptography: Bleichenbacher timing oracle attack against RSA decryption - incomplete fix for CVE-2020-25659 High

Package: cryptography
Installed Version: 41.0.7
Vulnerability CVE-2023-50782
Severity: HIGH
Fixed Version: 42.0.0
Link: CVE-2023-50782
poetry.lock Outdated
@@ -1,9 +1,10 @@
# This file is automatically @generated by Poetry 1.8.3 and should not be changed by hand.
# This file is automatically @generated by Poetry and should not be changed by hand.

Check failure

Code scanning / Trivy

python-cryptography: NULL pointer dereference with pkcs12.serialize_key_and_certificates when called with a non-matching certificate and private key and an hmac_hash override High

Package: cryptography
Installed Version: 41.0.7
Vulnerability CVE-2024-26130
Severity: HIGH
Fixed Version: 42.0.4
Link: CVE-2024-26130
poetry.lock Outdated
@@ -1,9 +1,10 @@
# This file is automatically @generated by Poetry 1.8.3 and should not be changed by hand.
# This file is automatically @generated by Poetry and should not be changed by hand.

Check warning

Code scanning / Trivy

openssl: denial of service via null dereference Medium

Package: cryptography
Installed Version: 41.0.7
Vulnerability CVE-2024-0727
Severity: MEDIUM
Fixed Version: 42.0.2
Link: CVE-2024-0727
poetry.lock Outdated
@@ -1,9 +1,10 @@
# This file is automatically @generated by Poetry 1.8.3 and should not be changed by hand.
# This file is automatically @generated by Poetry and should not be changed by hand.

Check warning

Code scanning / Trivy

pyca/cryptography has a vulnerable OpenSSL included in cryptography wheels Medium

Package: cryptography
Installed Version: 41.0.7
Vulnerability GHSA-h4gh-qq45-vh27
Severity: MEDIUM
Fixed Version: 43.0.1
Link: GHSA-h4gh-qq45-vh27
poetry.lock Outdated
@@ -1,9 +1,10 @@
# This file is automatically @generated by Poetry 1.8.3 and should not be changed by hand.
# This file is automatically @generated by Poetry and should not be changed by hand.

Check failure

Code scanning / Trivy

flask: Possible disclosure of permanent session cookie due to missing Vary: Cookie header High

Package: flask
Installed Version: 2.1.3
Vulnerability CVE-2023-30861
Severity: HIGH
Fixed Version: 2.3.2, 2.2.5
Link: CVE-2023-30861
poetry.lock Outdated
@@ -1,9 +1,10 @@
# This file is automatically @generated by Poetry 1.8.3 and should not be changed by hand.
# This file is automatically @generated by Poetry and should not be changed by hand.

Check failure

Code scanning / Trivy

pypa/setuptools: Remote code execution via download functions in the package_index module in pypa/setuptools High

Package: setuptools
Installed Version: 66.1.1
Vulnerability CVE-2024-6345
Severity: HIGH
Fixed Version: 70.0.0
Link: CVE-2024-6345
poetry.lock Outdated
@@ -1,9 +1,10 @@
# This file is automatically @generated by Poetry 1.8.3 and should not be changed by hand.
# This file is automatically @generated by Poetry and should not be changed by hand.

Check failure

Code scanning / Trivy

python-werkzeug: user may execute code on a developer's machine High

Package: werkzeug
Installed Version: 2.2.3
Vulnerability CVE-2024-34069
Severity: HIGH
Fixed Version: 3.0.3
Link: CVE-2024-34069
poetry.lock Outdated
@@ -1,9 +1,10 @@
# This file is automatically @generated by Poetry 1.8.3 and should not be changed by hand.
# This file is automatically @generated by Poetry and should not be changed by hand.

Check warning

Code scanning / Trivy

python-werkzeug: high resource consumption leading to denial of service Medium

Package: werkzeug
Installed Version: 2.2.3
Vulnerability CVE-2023-46136
Severity: MEDIUM
Fixed Version: 3.0.1, 2.3.8
Link: CVE-2023-46136
poetry.lock Outdated
@@ -1,9 +1,10 @@
# This file is automatically @generated by Poetry 1.8.3 and should not be changed by hand.
# This file is automatically @generated by Poetry and should not be changed by hand.

Check warning

Code scanning / Trivy

werkzeug: python-werkzeug: Werkzeug safe_join not safe on Windows Medium

Package: werkzeug
Installed Version: 2.2.3
Vulnerability CVE-2024-49766
Severity: MEDIUM
Fixed Version: 3.0.6
Link: CVE-2024-49766
poetry.lock Outdated
@@ -1,9 +1,10 @@
# This file is automatically @generated by Poetry 1.8.3 and should not be changed by hand.
# This file is automatically @generated by Poetry and should not be changed by hand.

Check warning

Code scanning / Trivy

werkzeug: python-werkzeug: Werkzeug possible resource exhaustion when parsing file data in forms Medium

Package: werkzeug
Installed Version: 2.2.3
Vulnerability CVE-2024-49767
Severity: MEDIUM
Fixed Version: 3.0.6
Link: CVE-2024-49767
@thomasyu888 thomasyu888 changed the title Update README.md Update README.md and update documentation Nov 2, 2024
@thomasyu888 thomasyu888 marked this pull request as draft November 2, 2024 05:20
.readthedocs.yml Outdated Show resolved Hide resolved
Copy link

dpulls bot commented Nov 7, 2024

🎉 All dependencies have been resolved !

Base automatically changed from fds-2449-fix-rtd to develop November 7, 2024 13:52
Copy link

sonarcloud bot commented Nov 19, 2024

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
None yet
Projects
None yet
Development

Successfully merging this pull request may close these issues.

2 participants