Commit 90ef231
Patch urllib3 CVEs in enforcer: bump to 2.7.0
The enforcer image pinned urllib3==2.6.3, still vulnerable to
CVE-2026-44431 (sensitive headers on cross-origin redirects) and
CVE-2026-44432 (DoS via excessive response decompression), both fixed
in 2.7.0. Companion to the krr image bump in this branch.
Co-Authored-By: Claude Opus 4.8 (1M context) <noreply@anthropic.com>1 parent 2d07503 commit 90ef231
1 file changed
Lines changed: 1 addition & 1 deletion
| Original file line number | Diff line number | Diff line change | |
|---|---|---|---|
| |||
7 | 7 | | |
8 | 8 | | |
9 | 9 | | |
10 | | - | |
| 10 | + | |
0 commit comments