-
Notifications
You must be signed in to change notification settings - Fork 3.3k
{Packaging} Bump urllib3 to 2.6.0 #32506
New issue
Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.
By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.
Already on GitHub? Sign in to your account
Conversation
Bumps [urllib3](https://github.com/urllib3/urllib3) from 2.5.0 to 2.6.0. - [Release notes](https://github.com/urllib3/urllib3/releases) - [Changelog](https://github.com/urllib3/urllib3/blob/main/CHANGES.rst) - [Commits](urllib3/urllib3@2.5.0...2.6.0) --- updated-dependencies: - dependency-name: urllib3 dependency-version: 2.6.0 dependency-type: direct:production ... Signed-off-by: dependabot[bot] <[email protected]>
️✔️AzureCLI-FullTest
|
️✔️AzureCLI-BreakingChangeTest
|
|
Thank you for your contribution! We will review the pull request and get back to you soon. |
|
The git hooks are available for azure-cli and azure-cli-extensions repos. They could help you run required checks before creating the PR. Please sync the latest code with latest dev branch (for azure-cli) or main branch (for azure-cli-extensions). pip install azdev --upgrade
azdev setup -c <your azure-cli repo path> -r <your azure-cli-extensions repo path>
|
|
@wangzelin007 @yonzhan We are seeing these CVEs when installing azure-cli from the latest Azure Linux 3.0 base image. What is the ETA for updating the package reference for Azure Linux 3.0 to use the new Azure CLI version with this vulnerability fix? |
|
On Jan 13. |
Bumps urllib3 from 2.5.0 to 2.6.0.
History Notes
[Core] Resolve CVE-2025-66418
[Core] Resolve CVE-2025-66471