Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

Bump Pillow to version 10.0.1 #43

Merged
merged 3 commits into from
Oct 13, 2023
Merged

Bump Pillow to version 10.0.1 #43

merged 3 commits into from
Oct 13, 2023

Conversation

Mandrenkov
Copy link
Collaborator

Context:

Dependabot identified a pair of security vulnerabilities in Pillow that were patched in v10.0.1.

Description of the Change:

  • Bumped the pinned pillow version to 10.0.1.
  • Bumped the Python version used by GitHub Actions (to use the latest version of Pillow).

Benefits:

  • This project no longer has any known security vulnerabilities. 🎉

Possible Drawbacks:

None.

Related GitHub Issues:

None.

@Mandrenkov Mandrenkov marked this pull request as ready for review October 5, 2023 21:13
Copy link
Contributor

@anthayes92 anthayes92 left a comment

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

LGTM!

@Mandrenkov Mandrenkov merged commit 12fe090 into master Oct 13, 2023
1 check passed
@Mandrenkov Mandrenkov deleted the bump-pillow-versions branch October 13, 2023 13:38
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
None yet
Projects
None yet
Development

Successfully merging this pull request may close these issues.

2 participants