-
-
Notifications
You must be signed in to change notification settings - Fork 310
New issue
Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.
By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.
Already on GitHub? Sign in to your account
lxml has a vulnerability but we can not update because of python3-saml relies on <4.7.1 #319
Comments
jpaniagualaconich
added a commit
to jpaniagualaconich/python3-saml
that referenced
this issue
Aug 17, 2022
jpaniagualaconich
added a commit
to jpaniagualaconich/python3-saml
that referenced
this issue
Aug 19, 2022
Hi! Any news on this topic? |
Hello, same problem :/ |
Hi - can you please merge this PR? We are facing this issue too. |
We would also really appreciate it if this PR can be merged/issue can be fixed. Running a vulnerable lxml in production does not sit well :) |
Yes please, same here! |
Sign up for free
to join this conversation on GitHub.
Already have an account?
Sign in to comment
Hi all.
As I mentioned in the subject of the issue, what I wanted to achieve is to update lxml to the first safe version which is the 4.9.1 but Poetry slams the door telling me I can not do it, and with valid reasons:
Security output.
Am I missing something or do somebody have a suggestion on this, pretty please?
Thank you for considering my request.
The text was updated successfully, but these errors were encountered: