Skip to content

Commit 13507f1

Browse files
committed
Updated version to v2.6.3, update changelog CVE links.
1 parent c621d13 commit 13507f1

File tree

1 file changed

+3
-0
lines changed

1 file changed

+3
-0
lines changed

CHANGELOG.md

Lines changed: 3 additions & 0 deletions
Original file line numberDiff line numberDiff line change
@@ -8,6 +8,9 @@
88
### Fixed
99
- Added the bugfix to skip the processing of the workspaces in error state.
1010
- Updated all the package versions to resolve security vulnerabilities.
11+
- Patch Certifi vulnerability. Removal of e-Tugra root certificate [CVE-2023-37920](https://github.com/advisories/GHSA-xqr8-7jwr-rhp7)
12+
- Patch Requests vulnerability. Leaking Proxy-Authorization headers [CVE-2023-32681](https://nvd.nist.gov/vuln/detail/CVE-2023-32681)
13+
- Patch aws-cdk-lib vulnerability. EKS overly permissive trust policies [CVE-2023-35165](https://nvd.nist.gov/vuln/detail/CVE-2023-35165)
1114
- Updated the docker base image to the python 3.11.
1215
- Updated all the lambda runtimes to python 3.11.
1316

0 commit comments

Comments
 (0)