From f7926121345f450a2545848f61f8e248677ca2ef Mon Sep 17 00:00:00 2001 From: Joey Orlando Date: Thu, 13 Jun 2024 09:08:50 -0400 Subject: [PATCH] update `sqlparse` to address CVE-2024-4340 (#4516) # Which issue(s) this PR closes Closes https://github.com/grafana/oncall/issues/4511 Also closes https://github.com/grafana/oncall/security/dependabot/108 --- engine/requirements-dev.txt | 2 +- engine/requirements.txt | 2 +- 2 files changed, 2 insertions(+), 2 deletions(-) diff --git a/engine/requirements-dev.txt b/engine/requirements-dev.txt index 2cf540fa..532c5d10 100644 --- a/engine/requirements-dev.txt +++ b/engine/requirements-dev.txt @@ -118,7 +118,7 @@ six==1.16.0 # via # -c requirements.txt # python-dateutil -sqlparse==0.4.4 +sqlparse==0.5.0 # via # -c requirements.txt # django diff --git a/engine/requirements.txt b/engine/requirements.txt index fc380212..50b0d193 100644 --- a/engine/requirements.txt +++ b/engine/requirements.txt @@ -437,7 +437,7 @@ social-auth-core==4.5.2 # via social-auth-app-django soupsieve==2.5 # via beautifulsoup4 -sqlparse==0.4.4 +sqlparse==0.5.0 # via # django # django-debug-toolbar