chore(deps-dev): bump aiohttp from 3.12.15 to 3.13.3 #993
Microsoft GitHub Policy Service / GitOps/AdvancedSecurity
failed
Apr 1, 2026 in 0s
Dependency Review
Dependency review detected vulnerable
Details
Dependency review summary
We have found 1 vulnerable package(s).
Vulnerability
Vulnerabilities were filtered by minimum severity Moderate.
| Dependency | File Name | Version | Vulnerability | Severity |
|---|---|---|---|---|
| aiohttp | requirements-dev.txt | 3.13.3 | aiohttp allows unlimited trailer headers, leading to possible uncapped memory usage | Moderate |
Loading