[Snyk] Security upgrade tornado from 6.5.7 to 6.5.9 - #16417
posit-snyk-bot wants to merge 1 commit into
Conversation
…p3-requirements.txt to reduce vulnerabilities The following vulnerabilities are fixed by pinning transitive dependencies: - https://snyk.io/vuln/SNYK-PYTHON-TORNADO-20415626 - https://snyk.io/vuln/SNYK-PYTHON-TORNADO-20415627
|
This is a patch version upgrade for Tornado that includes security enhancements. Behavioral Change in 6.5.8:
This is a security-driven behavioral change that could impact applications that legitimately process forms with a very high number of fields. If your application is affected, this limit can be adjusted using the No specific release notes were found for version 6.5.9, suggesting it likely contains minor bug fixes. The primary risk to consider is the change introduced in 6.5.8. Recommendation: Source: Tornado 6.5.8 Release Notes
|
|
E2E Tests 🚀 Why these tags?
More on automatic tags from changed files. |
Snyk has created this PR to fix 2 vulnerabilities in the pip dependencies of this project.
Snyk changed the following file(s):
extensions/positron-python/python_files/ipykernel_requirements/cp3-requirements.txtBreaking Change Risk
Important
Note: You are seeing this because you or someone else with access to this repository has authorized Snyk to open fix PRs.
For more information:
🧐 View latest project report
📜 Customise PR templates
🛠 Adjust project settings
📚 Read about Snyk's upgrade logic
Learn how to fix vulnerabilities with free interactive lessons:
🦉 Learn about vulnerability in an interactive lesson of Snyk Learn.