From f453d5d7e75cfd403b5552d6719b8ebc1f121d9e Mon Sep 17 00:00:00 2001 From: nigzak <102737855+nigzak@users.noreply.github.com> Date: Fri, 1 Mar 2024 19:50:17 +0100 Subject: [PATCH] =?UTF-8?q?chore:=20numexpr=20to=20fix=20CVE-2023-39631?= =?UTF-8?q?=E2=81=A0=20(2.8.4=20=3D>=202.9.0)=20(#27187)?= MIME-Version: 1.0 Content-Type: text/plain; charset=UTF-8 Content-Transfer-Encoding: 8bit Co-authored-by: Stefan Arnold --- requirements/base.in | 1 + requirements/base.txt | 8 +++++--- 2 files changed, 6 insertions(+), 3 deletions(-) diff --git a/requirements/base.in b/requirements/base.in index 6ecbbb51d66bd..d0f7108840597 100644 --- a/requirements/base.in +++ b/requirements/base.in @@ -19,3 +19,4 @@ -e file:. urllib3>=1.26.18 werkzeug>=3.0.1 +numexpr>=2.9.0 diff --git a/requirements/base.txt b/requirements/base.txt index 830131a9fb35b..0df7e08041ee5 100644 --- a/requirements/base.txt +++ b/requirements/base.txt @@ -1,4 +1,4 @@ -# SHA1:60b260247b40133819664dc998d9e2da48e9a592 +# SHA1:85649679306ea016e401f37adfbad832028d2e5f # # This file is autogenerated by pip-compile-multi # To update, run: @@ -212,8 +212,10 @@ nh3==0.2.11 # via apache-superset numba==0.57.1 # via pandas -numexpr==2.8.4 - # via pandas +numexpr==2.9.0 + # via + # -r requirements/base.in + # pandas numpy==1.23.5 # via # apache-superset