Commit 7ca4344
Fix urllib3 CVE-2026-44431/44432 in enforcer requirements
Bump urllib3 2.6.3 -> 2.7.0 in enforcer/requirements.txt to fix the
decompression-bomb streaming-API bypass (Dependabot alert #76, HIGH).
The root requirements.txt and poetry.lock are already on 2.7.0.
Co-Authored-By: Claude Opus 4.8 (1M context) <noreply@anthropic.com>1 parent 4315f04 commit 7ca4344
1 file changed
Lines changed: 1 addition & 1 deletion
| Original file line number | Diff line number | Diff line change | |
|---|---|---|---|
| |||
7 | 7 | | |
8 | 8 | | |
9 | 9 | | |
10 | | - | |
| 10 | + | |
0 commit comments