Upgrade dependencies to fix various vulnerabilities #48
Add this suggestion to a batch that can be applied as a single commit.
This suggestion is invalid because no changes were made to the code.
Suggestions cannot be applied while the pull request is closed.
Suggestions cannot be applied while viewing a subset of changes.
Only one suggestion per line can be applied in a batch.
Add this suggestion to a batch that can be applied as a single commit.
Applying suggestions on deleted lines is not supported.
You must change the existing code in this line in order to create a valid suggestion.
Outdated suggestions cannot be applied.
This suggestion has been applied or marked resolved.
Suggestions cannot be applied from pending reviews.
Suggestions cannot be applied on multi-line comments.
Suggestions cannot be applied while the pull request is queued to merge.
Suggestion cannot be applied right now. Please check back later.
certifi 2022.12.7 -> 2023.7.22
pyyaml 5.3.1 -> 6.0.1
flask 2.0.3 -> 2.2.5
werkzeug 2.0.3 -> 2.2.3
pyopenssl 22.1.0 -> 23.2.0
pyjwt 2.3.0 -> 2.4.0
snowflake-connector-python 2.9.0 -> 3.1.0
redis 4.5.1 -> 4.5.4
tornado 6.2 -> 6.3.3
cryptography 3.3.2 -> 41.0.4
uwsgi 2.0.21 -> 2.0.22
Still need to upgrade:
requests 2.28.2 -> 2.31.0 [Medium Severity] (need to review the changelog carefully)
urllib3 1.26.16 -> 1.26.18 [Medium Severity] (need to review the changelog carefully)
werkzeug 2.2.3 -> 3.0.1 [Medium Severity]
cryptography 41.0.4 -> 41.0.5 [Medium Severity]
ujson 1.35 -> 5.4.0 [High Severity] (breaks double precision during parsing in file-uploader)