Skip to content

Update dependency Jinja2 to v3.1.5

df1ff27
Select commit
Loading
Failed to load commit list.
Open

Update dependency Jinja2 to v3.1.5 #19

Update dependency Jinja2 to v3.1.5
df1ff27
Select commit
Loading
Failed to load commit list.
Mend for GitHub.com / WhiteSource Security Check failed May 17, 2026 in 1m 8s

Security Report

You have successfully remediated 13 vulnerabilities, but introduced 10 new vulnerabilities in this branch.

❌ New vulnerabilities:

Vulnerability Severity CVSS Score Vulnerable Library Direct Library Suggested Fix Issue
CVE-2024-26130

Path to dependency file: /requirements.txt

Path to vulnerable library: /tmp/ws-ua_20260517002148_AXRADA/python_YPITOJ/202605170021491/env/lib/python3.10/site-packages/cryptography-39.0.0.dist-info

Dependency Hierarchy:

-> ❌ cryptography-39.0.0-cp36-abi3-manylinux_2_28_x86_64.whl (Vulnerable Library)

High 7.5 Direct cryptography-39.0.0-cp36-abi3-manylinux_2_28_x86_64.whl cryptography-39.0.0-cp36-abi3-manylinux_2_28_x86_64.whl 42.0.4 None
CVE-2023-50782

Path to dependency file: /requirements.txt

Path to vulnerable library: /tmp/ws-ua_20260517002148_AXRADA/python_YPITOJ/202605170021491/env/lib/python3.10/site-packages/cryptography-39.0.0.dist-info

Dependency Hierarchy:

-> ❌ cryptography-39.0.0-cp36-abi3-manylinux_2_28_x86_64.whl (Vulnerable Library)

High 7.5 Direct cryptography-39.0.0-cp36-abi3-manylinux_2_28_x86_64.whl cryptography-39.0.0-cp36-abi3-manylinux_2_28_x86_64.whl 42.0.0 None
CVE-2023-38325

Path to dependency file: /requirements.txt

Path to vulnerable library: /tmp/ws-ua_20260517002148_AXRADA/python_YPITOJ/202605170021491/env/lib/python3.10/site-packages/cryptography-39.0.0.dist-info

Dependency Hierarchy:

-> ❌ cryptography-39.0.0-cp36-abi3-manylinux_2_28_x86_64.whl (Vulnerable Library)

High 7.5 Direct cryptography-39.0.0-cp36-abi3-manylinux_2_28_x86_64.whl cryptography-39.0.0-cp36-abi3-manylinux_2_28_x86_64.whl 41.0.2 None
CVE-2023-0286

Path to dependency file: /requirements.txt

Path to vulnerable library: /tmp/ws-ua_20260517002148_AXRADA/python_YPITOJ/202605170021491/env/lib/python3.10/site-packages/cryptography-39.0.0.dist-info

Dependency Hierarchy:

-> ❌ cryptography-39.0.0-cp36-abi3-manylinux_2_28_x86_64.whl (Vulnerable Library)

High 7.4 Direct cryptography-39.0.0-cp36-abi3-manylinux_2_28_x86_64.whl cryptography-39.0.0-cp36-abi3-manylinux_2_28_x86_64.whl openssl-3.0.8;cryptography - 39.0.1;openssl-src - 111.25.0+1.1.1t,300.0.12+3.0.8,openssl - 1.1.1u,openssl - 3.0.9,openssl - 1.1.1u,openssl - 3.0.9 None
CVE-2026-26007

Path to dependency file: /requirements.txt

Path to vulnerable library: /tmp/ws-ua_20260517002148_AXRADA/python_YPITOJ/202605170021491/env/lib/python3.10/site-packages/cryptography-39.0.0.dist-info

Dependency Hierarchy:

-> ❌ cryptography-39.0.0-cp36-abi3-manylinux_2_28_x86_64.whl (Vulnerable Library)

Medium 5.9 Direct cryptography-39.0.0-cp36-abi3-manylinux_2_28_x86_64.whl cryptography-39.0.0-cp36-abi3-manylinux_2_28_x86_64.whl 46.0.5 None
CVE-2024-3772

Path to dependency file: /requirements.txt

Path to vulnerable library: /tmp/ws-ua_20260517002148_AXRADA/python_YPITOJ/202605170021491/env/lib/python3.10/site-packages/pydantic-1.10.4.dist-info

Dependency Hierarchy:

-> ❌ pydantic-1.10.4-cp310-cp310-manylinux_2_17_x86_64.manylinux2014_x86_64.whl (Vulnerable Library)

Medium 5.9 Direct pydantic-1.10.4-cp310-cp310-manylinux_2_17_x86_64.manylinux2014_x86_64.whl pydantic-1.10.4-cp310-cp310-manylinux_2_17_x86_64.manylinux2014_x86_64.whl 1.10.13 None
CVE-2023-49083

Path to dependency file: /requirements.txt

Path to vulnerable library: /tmp/ws-ua_20260517002148_AXRADA/python_YPITOJ/202605170021491/env/lib/python3.10/site-packages/cryptography-39.0.0.dist-info

Dependency Hierarchy:

-> ❌ cryptography-39.0.0-cp36-abi3-manylinux_2_28_x86_64.whl (Vulnerable Library)

Medium 5.9 Direct cryptography-39.0.0-cp36-abi3-manylinux_2_28_x86_64.whl cryptography-39.0.0-cp36-abi3-manylinux_2_28_x86_64.whl 41.0.6 None
CVE-2024-0727

Path to dependency file: /requirements.txt

Path to vulnerable library: /tmp/ws-ua_20260517002148_AXRADA/python_YPITOJ/202605170021491/env/lib/python3.10/site-packages/cryptography-39.0.0.dist-info

Dependency Hierarchy:

-> ❌ cryptography-39.0.0-cp36-abi3-manylinux_2_28_x86_64.whl (Vulnerable Library)

Medium 5.5 Direct cryptography-39.0.0-cp36-abi3-manylinux_2_28_x86_64.whl cryptography-39.0.0-cp36-abi3-manylinux_2_28_x86_64.whl openssl - 1.1.1x,openssl - 3.0.13,openssl - 3.1.5,openssl - 3.2.1,openssl - 3.2.1,openssl - 1.1.1x,openssl - 3.0.13,openssl - 3.1.5,https://github.com/openssl/openssl.git - openssl-1.1.1x,https://github.com/openssl/openssl.git - openssl-3.2.1,https://github.com/openssl/openssl.git - openssl-3.1.5,https://github.com/openssl/openssl.git - openssl-3.0.13,https://github.com/openssl/openssl.git - openssl-1.0.2zj None
CVE-2023-23931

Path to dependency file: /requirements.txt

Path to vulnerable library: /tmp/ws-ua_20260517002148_AXRADA/python_YPITOJ/202605170021491/env/lib/python3.10/site-packages/cryptography-39.0.0.dist-info

Dependency Hierarchy:

-> ❌ cryptography-39.0.0-cp36-abi3-manylinux_2_28_x86_64.whl (Vulnerable Library)

Medium 4.8 Direct cryptography-39.0.0-cp36-abi3-manylinux_2_28_x86_64.whl cryptography-39.0.0-cp36-abi3-manylinux_2_28_x86_64.whl 39.0.1 None
CVE-2026-34073

Path to dependency file: /requirements.txt

Path to vulnerable library: /tmp/ws-ua_20260517002148_AXRADA/python_YPITOJ/202605170021491/env/lib/python3.10/site-packages/cryptography-39.0.0.dist-info

Dependency Hierarchy:

-> ❌ cryptography-39.0.0-cp36-abi3-manylinux_2_28_x86_64.whl (Vulnerable Library)

Low 3.7 Direct cryptography-39.0.0-cp36-abi3-manylinux_2_28_x86_64.whl cryptography-39.0.0-cp36-abi3-manylinux_2_28_x86_64.whl cryptography - 46.0.6 None

✔️ Remediated vulnerabilities:

Vulnerability Vulnerable Library
CVE-2023-38325 cryptography-39.0.0-cp36-abi3-manylinux_2_24_x86_64.whl
CVE-2024-0727 cryptography-39.0.0-cp36-abi3-manylinux_2_24_x86_64.whl
CVE-2024-22195 Jinja2-3.1.2-py3-none-any.whl
CVE-2023-0286 cryptography-39.0.0-cp36-abi3-manylinux_2_24_x86_64.whl
CVE-2024-56201 Jinja2-3.1.2-py3-none-any.whl
CVE-2023-50782 cryptography-39.0.0-cp36-abi3-manylinux_2_24_x86_64.whl
CVE-2024-3772 pydantic-1.10.4-cp37-cp37m-manylinux_2_17_x86_64.manylinux2014_x86_64.whl
CVE-2026-34073 cryptography-39.0.0-cp36-abi3-manylinux_2_24_x86_64.whl
CVE-2026-26007 cryptography-39.0.0-cp36-abi3-manylinux_2_24_x86_64.whl
CVE-2024-56326 Jinja2-3.1.2-py3-none-any.whl
CVE-2024-26130 cryptography-39.0.0-cp36-abi3-manylinux_2_24_x86_64.whl
CVE-2023-49083 cryptography-39.0.0-cp36-abi3-manylinux_2_24_x86_64.whl
CVE-2023-23931 cryptography-39.0.0-cp36-abi3-manylinux_2_24_x86_64.whl

Base branch total remaining vulnerabilities: 39
Base branch commit: null


Total libraries scanned: 27

Scan token: 244c143473334cc29369608d571b87f3