From d2e38dc12ab30df815bdd9a647904c58e33b2a68 Mon Sep 17 00:00:00 2001 From: "Daniel A. Wozniak" Date: Thu, 2 Apr 2026 14:29:39 -0700 Subject: [PATCH] Update Python versions to latest security releases Updated tracked Python versions to include security-only releases: - Python 3.12.13 - Python 3.11.15 - Python 3.10.20 These releases address several vulnerabilities: - CVE-2024-6923: Header injection in email module - CVE-2026-24515, CVE-2026-25210, CVE-2025-59375: XML memory amplification and libexpat vulnerabilities - DoS hardening in plistlib, http.client, and os.path.expandvars() - Memory safety fixes (use-after-free) in list and ssl modules --- relenv/python-versions.json | 5 ++++- 1 file changed, 4 insertions(+), 1 deletion(-) diff --git a/relenv/python-versions.json b/relenv/python-versions.json index b901f507..01bffc5e 100644 --- a/relenv/python-versions.json +++ b/relenv/python-versions.json @@ -185,7 +185,10 @@ "3.13.10": "15a47abaf928dbbe73f932ef3ba78070cdfe699d", "3.13.9": "53a9cd799370adad6fe471a2ee45874bbf6ccfc1", "3.9.25": "36c7257ec30dca042679626d0dff79715acd4efb", - "3.13.12": "7c5b0241cb7d33d4eab78c9fd44967b08220dfe7" + "3.13.12": "7c5b0241cb7d33d4eab78c9fd44967b08220dfe7", + "3.12.13": "ad3e9c333d91bee73f1d5f4a6fe6e88f2e74d911", + "3.11.15": "e434ba0457a632f86e73239174bb1737cb57c09c", + "3.10.20": "33b99a3309d5a0323b71a4764543f61ff1fcf8f3" }, "dependencies": { "perl": {