pygments < 2.1 had a shell injection attack
We only really use it in tests, but if tests still pass this should be an easy upgrade.
This commit is contained in:
@@ -82,7 +82,7 @@ piexif==1.0.2
|
||||
Pillow==3.4
|
||||
polib==1.0.3
|
||||
pycrypto>=2.6
|
||||
pygments==2.0.1
|
||||
pygments==2.2.0
|
||||
pygraphviz==1.1
|
||||
pyjwkest==1.3.2
|
||||
# TODO Replace PyJWT usage with pyjwkest
|
||||
|
||||
Reference in New Issue
Block a user