Package | Installed | Affected | Info |
---|---|---|---|
py | 1.11.0 | <=1.11.0 |
show ** DISPUTED ** Py throughout 1.11.0 allows remote attackers to conduct a ReDoS (Regular expression Denial of Service) attack via a Subversion repository with crafted info data because the InfoSvnCommand argument is mishandled. https://github.com/pytest-dev/py/issues/287 |
fastapi | 0.72.0 | <0.75.2 |
show Fastapi 0.75.2 updates its NPM dependency 'swagger-ui' to include security fixes. |
fastapi | 0.72.0 | <0.109.1 |
show FastAPI 0.109.1 addresses a critical security issue by upgrading its dependency python-multipart to version >=0.0.7. The upgrade mitigates a Regular Expression Denial of Service (ReDoS) vulnerability, which occurs when parsing form data. https://github.com/tiangolo/fastapi/security/advisories/GHSA-qf9m-vfgh-m389 |
fastapi | 0.72.0 | <0.95.2 |
show Fastapi 0.95.2 updates its dependency 'Starlette' to versions '>=0.27.0' to include a security fix. |
fastapi | 0.72.0 | <0.75.2 |
show Fastapi 0.75.2 updates its dependency 'ujson' ranges to include a security fix. |
fastapi | 0.72.0 | <0.75.2 |
show Fastapi 0.75.2 updates its NPM dependency 'swagger-ui' to include security fixes. |
fastapi | 0.72.0 | <0.92.0 |
show Fastapi 0.92.0 updates its dependency 'Starlette' to v0.25.0 to include a security fix. |
fastapi | 0.72.0 | <=0.109.0 |
show Fastapi 0.109.1 updates its minimum version of 'python-multipart' to >=0.0.7 to include a security fix. |
Package | Installed | Affected | Info |
---|---|---|---|
py | 1.11.0 | <=1.11.0 |
show ** DISPUTED ** Py throughout 1.11.0 allows remote attackers to conduct a ReDoS (Regular expression Denial of Service) attack via a Subversion repository with crafted info data because the InfoSvnCommand argument is mishandled. https://github.com/pytest-dev/py/issues/287 |
Package | Installed | Affected | Info |
---|---|---|---|
py | 1.11.0 | <=1.11.0 |
show ** DISPUTED ** Py throughout 1.11.0 allows remote attackers to conduct a ReDoS (Regular expression Denial of Service) attack via a Subversion repository with crafted info data because the InfoSvnCommand argument is mishandled. https://github.com/pytest-dev/py/issues/287 |
Package | Installed | Affected | Info |
---|---|---|---|
py | 1.11.0 | <=1.11.0 |
show ** DISPUTED ** Py throughout 1.11.0 allows remote attackers to conduct a ReDoS (Regular expression Denial of Service) attack via a Subversion repository with crafted info data because the InfoSvnCommand argument is mishandled. https://github.com/pytest-dev/py/issues/287 |
SQLAlchemy | 1.4.46 | <2.0.0b1 |
show Sqlalchemy 2.0.0b1 avoids leaking cleartext passwords to the open for careless uses of str(engine.URL()) in logs and prints. https://github.com/sqlalchemy/sqlalchemy/pull/8563 |
Package | Installed | Affected | Info |
---|---|---|---|
py | 1.11.0 | <=1.11.0 |
show ** DISPUTED ** Py throughout 1.11.0 allows remote attackers to conduct a ReDoS (Regular expression Denial of Service) attack via a Subversion repository with crafted info data because the InfoSvnCommand argument is mishandled. https://github.com/pytest-dev/py/issues/287 |
SQLAlchemy | 1.4.46 | <2.0.0b1 |
show Sqlalchemy 2.0.0b1 avoids leaking cleartext passwords to the open for careless uses of str(engine.URL()) in logs and prints. https://github.com/sqlalchemy/sqlalchemy/pull/8563 |
Package | Installed | Affected | Info |
---|---|---|---|
py | 1.11.0 | <=1.11.0 |
show ** DISPUTED ** Py throughout 1.11.0 allows remote attackers to conduct a ReDoS (Regular expression Denial of Service) attack via a Subversion repository with crafted info data because the InfoSvnCommand argument is mishandled. https://github.com/pytest-dev/py/issues/287 |
SQLAlchemy | 1.4.46 | <2.0.0b1 |
show Sqlalchemy 2.0.0b1 avoids leaking cleartext passwords to the open for careless uses of str(engine.URL()) in logs and prints. https://github.com/sqlalchemy/sqlalchemy/pull/8563 |
Package | Installed | Affected | Info |
---|---|---|---|
py | 1.11.0 | <=1.11.0 |
show ** DISPUTED ** Py throughout 1.11.0 allows remote attackers to conduct a ReDoS (Regular expression Denial of Service) attack via a Subversion repository with crafted info data because the InfoSvnCommand argument is mishandled. https://github.com/pytest-dev/py/issues/287 |
Package | Installed | Affected | Info |
---|---|---|---|
py | 1.11.0 | <=1.11.0 |
show ** DISPUTED ** Py throughout 1.11.0 allows remote attackers to conduct a ReDoS (Regular expression Denial of Service) attack via a Subversion repository with crafted info data because the InfoSvnCommand argument is mishandled. https://github.com/pytest-dev/py/issues/287 |
Package | Installed | Affected | Info |
---|---|---|---|
py | 1.11.0 | <=1.11.0 |
show ** DISPUTED ** Py throughout 1.11.0 allows remote attackers to conduct a ReDoS (Regular expression Denial of Service) attack via a Subversion repository with crafted info data because the InfoSvnCommand argument is mishandled. https://github.com/pytest-dev/py/issues/287 |
https://pyup.io/repos/github/h0rn3t/fastapi-async-sqlalchemy/python-3-shield.svg
[](https://pyup.io/repos/github/h0rn3t/fastapi-async-sqlalchemy/)
.. image:: https://pyup.io/repos/github/h0rn3t/fastapi-async-sqlalchemy/python-3-shield.svg :target: https://pyup.io/repos/github/h0rn3t/fastapi-async-sqlalchemy/ :alt: Python 3
<a href="https://pyup.io/repos/github/h0rn3t/fastapi-async-sqlalchemy/"><img src="https://pyup.io/repos/github/h0rn3t/fastapi-async-sqlalchemy/shield.svg" alt="Python 3" /></a>
!https://pyup.io/repos/github/h0rn3t/fastapi-async-sqlalchemy/python-3-shield.svg(Python 3)!:https://pyup.io/repos/github/h0rn3t/fastapi-async-sqlalchemy/
{<img src="https://pyup.io/repos/github/h0rn3t/fastapi-async-sqlalchemy/python-3-shield.svg" alt="Python 3" />}[https://pyup.io/repos/github/h0rn3t/fastapi-async-sqlalchemy/]
https://pyup.io/repos/github/h0rn3t/fastapi-async-sqlalchemy/shield.svg
[](https://pyup.io/repos/github/h0rn3t/fastapi-async-sqlalchemy/)
.. image:: https://pyup.io/repos/github/h0rn3t/fastapi-async-sqlalchemy/shield.svg :target: https://pyup.io/repos/github/h0rn3t/fastapi-async-sqlalchemy/ :alt: Updates
<a href="https://pyup.io/repos/github/h0rn3t/fastapi-async-sqlalchemy/"><img src="https://pyup.io/repos/github/h0rn3t/fastapi-async-sqlalchemy/shield.svg" alt="Updates" /></a>
!https://pyup.io/repos/github/h0rn3t/fastapi-async-sqlalchemy/shield.svg(Updates)!:https://pyup.io/repos/github/h0rn3t/fastapi-async-sqlalchemy/
{<img src="https://pyup.io/repos/github/h0rn3t/fastapi-async-sqlalchemy/shield.svg" alt="Updates" />}[https://pyup.io/repos/github/h0rn3t/fastapi-async-sqlalchemy/]