Skip to content

Update python requests dependency #127

Open
@acornett21

Description

@acornett21

The request dependency has had a CVE in it for awhile now, but the fixed version does not support http+unix protocol that is used in this project, so we cannot update.

This issue we would need to:

  • See what it takes to update to new libraries/protocols
  • Update requests library
  • Address any testing gaps

More info in this comment and related slack thread.

Metadata

Metadata

Assignees

No one assigned

    Labels

    area/dependencyIssues or PRs related to dependency changes

    Type

    No type

    Projects

    No projects

    Milestone

    No milestone

    Relationships

    None yet

    Development

    No branches or pull requests

    Issue actions