Update dependency click to v8.3.3 #39
Security Report
You have successfully remediated 10 vulnerabilities, but introduced 9 new vulnerabilities in this branch.
❌ New vulnerabilities:
| Vulnerability | Severity | Vulnerable Library | Direct Library | Suggested Fix | Issue | |
|---|---|---|---|---|---|---|
CVE-2024-26130Path to dependency file: /requirements.txt Path to vulnerable library: /tmp/ws-ua_20260515004051_SNXTEJ/python_FQWUUC/202605150040521/env/lib/python3.10/site-packages/cryptography-39.0.0.dist-info Dependency Hierarchy: -> ❌ cryptography-39.0.0-cp36-abi3-manylinux_2_28_x86_64.whl (Vulnerable Library) |
7.5 | Direct cryptography-39.0.0-cp36-abi3-manylinux_2_28_x86_64.whl |
cryptography-39.0.0-cp36-abi3-manylinux_2_28_x86_64.whl | 42.0.4 | None | |
CVE-2023-50782Path to dependency file: /requirements.txt Path to vulnerable library: /tmp/ws-ua_20260515004051_SNXTEJ/python_FQWUUC/202605150040521/env/lib/python3.10/site-packages/cryptography-39.0.0.dist-info Dependency Hierarchy: -> ❌ cryptography-39.0.0-cp36-abi3-manylinux_2_28_x86_64.whl (Vulnerable Library) |
7.5 | Direct cryptography-39.0.0-cp36-abi3-manylinux_2_28_x86_64.whl |
cryptography-39.0.0-cp36-abi3-manylinux_2_28_x86_64.whl | 42.0.0 | None | |
CVE-2023-38325Path to dependency file: /requirements.txt Path to vulnerable library: /tmp/ws-ua_20260515004051_SNXTEJ/python_FQWUUC/202605150040521/env/lib/python3.10/site-packages/cryptography-39.0.0.dist-info Dependency Hierarchy: -> ❌ cryptography-39.0.0-cp36-abi3-manylinux_2_28_x86_64.whl (Vulnerable Library) |
7.5 | Direct cryptography-39.0.0-cp36-abi3-manylinux_2_28_x86_64.whl |
cryptography-39.0.0-cp36-abi3-manylinux_2_28_x86_64.whl | 41.0.2 | None | |
CVE-2026-26007Path to dependency file: /requirements.txt Path to vulnerable library: /tmp/ws-ua_20260515004051_SNXTEJ/python_FQWUUC/202605150040521/env/lib/python3.10/site-packages/cryptography-39.0.0.dist-info Dependency Hierarchy: -> ❌ cryptography-39.0.0-cp36-abi3-manylinux_2_28_x86_64.whl (Vulnerable Library) |
5.9 | Direct cryptography-39.0.0-cp36-abi3-manylinux_2_28_x86_64.whl |
cryptography-39.0.0-cp36-abi3-manylinux_2_28_x86_64.whl | 46.0.5 | None | |
CVE-2024-3772Path to dependency file: /requirements.txt Path to vulnerable library: /tmp/ws-ua_20260515004051_SNXTEJ/python_FQWUUC/202605150040521/env/lib/python3.10/site-packages/pydantic-1.10.4.dist-info Dependency Hierarchy: -> ❌ pydantic-1.10.4-cp310-cp310-manylinux_2_17_x86_64.manylinux2014_x86_64.whl (Vulnerable Library) |
5.9 | Direct pydantic-1.10.4-cp310-cp310-manylinux_2_17_x86_64.manylinux2014_x86_64.whl |
pydantic-1.10.4-cp310-cp310-manylinux_2_17_x86_64.manylinux2014_x86_64.whl | 1.10.13 | None | |
CVE-2023-49083Path to dependency file: /requirements.txt Path to vulnerable library: /tmp/ws-ua_20260515004051_SNXTEJ/python_FQWUUC/202605150040521/env/lib/python3.10/site-packages/cryptography-39.0.0.dist-info Dependency Hierarchy: -> ❌ cryptography-39.0.0-cp36-abi3-manylinux_2_28_x86_64.whl (Vulnerable Library) |
5.9 | Direct cryptography-39.0.0-cp36-abi3-manylinux_2_28_x86_64.whl |
cryptography-39.0.0-cp36-abi3-manylinux_2_28_x86_64.whl | 41.0.6 | None | |
CVE-2024-0727Path to dependency file: /requirements.txt Path to vulnerable library: /tmp/ws-ua_20260515004051_SNXTEJ/python_FQWUUC/202605150040521/env/lib/python3.10/site-packages/cryptography-39.0.0.dist-info Dependency Hierarchy: -> ❌ cryptography-39.0.0-cp36-abi3-manylinux_2_28_x86_64.whl (Vulnerable Library) |
5.5 | Direct cryptography-39.0.0-cp36-abi3-manylinux_2_28_x86_64.whl |
cryptography-39.0.0-cp36-abi3-manylinux_2_28_x86_64.whl | openssl - 1.1.1x,openssl - 3.0.13,openssl - 3.1.5,openssl - 3.2.1,openssl - 3.2.1,openssl - 1.1.1x,openssl - 3.0.13,openssl - 3.1.5,https://github.com/openssl/openssl.git - openssl-1.1.1x,https://github.com/openssl/openssl.git - openssl-3.2.1,https://github.com/openssl/openssl.git - openssl-3.1.5,https://github.com/openssl/openssl.git - openssl-3.0.13,https://github.com/openssl/openssl.git - openssl-1.0.2zj | None | |
CVE-2023-23931Path to dependency file: /requirements.txt Path to vulnerable library: /tmp/ws-ua_20260515004051_SNXTEJ/python_FQWUUC/202605150040521/env/lib/python3.10/site-packages/cryptography-39.0.0.dist-info Dependency Hierarchy: -> ❌ cryptography-39.0.0-cp36-abi3-manylinux_2_28_x86_64.whl (Vulnerable Library) |
4.8 | Direct cryptography-39.0.0-cp36-abi3-manylinux_2_28_x86_64.whl |
cryptography-39.0.0-cp36-abi3-manylinux_2_28_x86_64.whl | 39.0.1 | None | |
CVE-2026-34073Path to dependency file: /requirements.txt Path to vulnerable library: /tmp/ws-ua_20260515004051_SNXTEJ/python_FQWUUC/202605150040521/env/lib/python3.10/site-packages/cryptography-39.0.0.dist-info Dependency Hierarchy: -> ❌ cryptography-39.0.0-cp36-abi3-manylinux_2_28_x86_64.whl (Vulnerable Library) |
3.7 | Direct cryptography-39.0.0-cp36-abi3-manylinux_2_28_x86_64.whl |
cryptography-39.0.0-cp36-abi3-manylinux_2_28_x86_64.whl | cryptography - 46.0.6 | None |
✔️ Remediated vulnerabilities:
| Vulnerability | Vulnerable Library |
|---|---|
| CVE-2023-38325 | cryptography-39.0.0-cp36-abi3-manylinux_2_24_x86_64.whl |
| CVE-2024-0727 | cryptography-39.0.0-cp36-abi3-manylinux_2_24_x86_64.whl |
| CVE-2023-50782 | cryptography-39.0.0-cp36-abi3-manylinux_2_24_x86_64.whl |
| CVE-2026-7246 | click-8.1.3-py3-none-any.whl |
| CVE-2024-3772 | pydantic-1.10.4-cp37-cp37m-manylinux_2_17_x86_64.manylinux2014_x86_64.whl |
| CVE-2026-34073 | cryptography-39.0.0-cp36-abi3-manylinux_2_24_x86_64.whl |
| CVE-2026-26007 | cryptography-39.0.0-cp36-abi3-manylinux_2_24_x86_64.whl |
| CVE-2024-26130 | cryptography-39.0.0-cp36-abi3-manylinux_2_24_x86_64.whl |
| CVE-2023-49083 | cryptography-39.0.0-cp36-abi3-manylinux_2_24_x86_64.whl |
| CVE-2023-23931 | cryptography-39.0.0-cp36-abi3-manylinux_2_24_x86_64.whl |
Base branch total remaining vulnerabilities: 42
Base branch commit: null
Total libraries scanned: 27
Scan token: 467c77e0ac7247d68a3d80eb31468dde