Skip to content

Bump Django dependency due to vulnerability#730

Merged
hellkite500 merged 1 commit intoNOAA-OWP:masterfrom
robertbartel:fix_dependabot_django
Sep 12, 2025
Merged

Bump Django dependency due to vulnerability#730
hellkite500 merged 1 commit intoNOAA-OWP:masterfrom
robertbartel:fix_dependabot_django

Conversation

@robertbartel
Copy link
Contributor

Bumping Django dependency requirements to ~=4.2.24 to address this Dependabot alert.

(CVE-2025-57833 / GHSA-6w2r-r2m5-xq5w)

@hellkite500 hellkite500 merged commit d0580f9 into NOAA-OWP:master Sep 12, 2025
1 of 9 checks passed
@robertbartel robertbartel deleted the fix_dependabot_django branch September 12, 2025 13:21
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

2 participants