Commit Graph

3 Commits

Author SHA1 Message Date
dependabot[bot]
f35de4f481 Bump werkzeug from 0.12.2 to 0.15.3
Bumps [werkzeug](https://github.com/pallets/werkzeug) from 0.12.2 to 0.15.3.
- [Release notes](https://github.com/pallets/werkzeug/releases)
- [Changelog](https://github.com/pallets/werkzeug/blob/master/CHANGES.rst)
- [Commits](https://github.com/pallets/werkzeug/compare/0.12.2...0.15.3)

Signed-off-by: dependabot[bot] <support@github.com>
2019-10-21 14:59:24 +00:00
Jan Groß
5557185732 Update requests version because of CVE-2018-18074
The Requests package before 2.20.0 for Python sends an HTTP Authorization header to an http URI upon receiving a same-hostname https-to-http redirect, which makes it easier for remote attackers to discover credentials by sniffing the network.
2018-11-06 13:21:54 +01:00
Jan Groß
5c348ffe84 Code import 2017-07-20 18:02:16 +02:00