Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

Update dependency requests to v2.25.0 #288

Open
wants to merge 1 commit into
base: master
Choose a base branch
from

Conversation

mend-for-github-com[bot]
Copy link

@mend-for-github-com mend-for-github-com bot commented Jan 26, 2023

This PR contains the following updates:

Package Update Change
requests (source, changelog) minor ==2.20.0 -> ==2.25.0

By merging this PR, the below issues will be automatically resolved and closed:

Severity CVSS Score CVE GitHub Issue
High 7.5 CVE-2021-33503 #403

Release Notes

psf/requests (requests)

v2.25.0

Compare Source

Improvements

  • Added support for NETRC environment variable. (#​5643)

Dependencies

  • Requests now supports urllib3 v1.26.

Deprecations

  • Requests v2.25.x will be the last release series with support for Python 3.5.
  • The requests[security] extra is officially deprecated and will be removed
    in Requests v2.26.0.

v2.24.0

Compare Source

Improvements

  • pyOpenSSL TLS implementation is now only used if Python
    either doesn't have an ssl module or doesn't support
    SNI. Previously pyOpenSSL was unconditionally used if available.
    This applies even if pyOpenSSL is installed via the
    requests[security] extra (#​5443)

  • Redirect resolution should now only occur when
    allow_redirects is True. (#​5492)

  • No longer perform unnecessary Content-Length calculation for
    requests that won't use it. (#​5496)

v2.23.0

Compare Source

Improvements

  • Remove defunct reference to prefetch in Session __attrs__ (#​5110)

Bugfixes

  • Requests no longer outputs password in basic auth usage warning. (#​5099)

Dependencies

  • Pinning for chardet and idna now uses major version instead of minor.
    This hopefully reduces the need for releases every time a dependency is updated.

v2.22.0

Compare Source

Dependencies

  • Requests now supports urllib3 v1.25.2.
    (note: 1.25.0 and 1.25.1 are incompatible)

Deprecations

  • Requests has officially stopped support for Python 3.4.

v2.21.0

Compare Source

Dependencies

  • Requests now supports idna v2.8.

v2.20.1

Compare Source

Bugfixes

  • Fixed bug with unintended Authorization header stripping for
    redirects using default ports (http/80, https/443).

  • If you want to rebase/retry this PR, check this box

@mend-for-github-com mend-for-github-com bot added the security fix Security fix generated by WhiteSource label Jan 26, 2023
@mend-for-github-com mend-for-github-com bot changed the title Update dependency requests to v2.25.0 Update dependency requests to v2.25.0 - autoclosed Mar 28, 2023
@mend-for-github-com mend-for-github-com bot deleted the whitesource-remediate/requests-2.x branch March 28, 2023 01:50
@mend-for-github-com mend-for-github-com bot changed the title Update dependency requests to v2.25.0 - autoclosed Update dependency requests to v2.25.0 Mar 31, 2023
@mend-for-github-com mend-for-github-com bot reopened this Mar 31, 2023
@mend-for-github-com mend-for-github-com bot restored the whitesource-remediate/requests-2.x branch March 31, 2023 13:33
@mend-for-github-com mend-for-github-com bot force-pushed the whitesource-remediate/requests-2.x branch from cfc7934 to e21b653 Compare May 10, 2023 15:08
@mend-for-github-com mend-for-github-com bot changed the title Update dependency requests to v2.25.0 Update dependency requests to v2.20.1 May 10, 2023
@mend-for-github-com mend-for-github-com bot force-pushed the whitesource-remediate/requests-2.x branch from e21b653 to 9083500 Compare May 11, 2023 20:40
@mend-for-github-com mend-for-github-com bot changed the title Update dependency requests to v2.20.1 Update dependency requests to v2.25.0 May 11, 2023
@mend-for-github-com mend-for-github-com bot changed the title Update dependency requests to v2.25.0 Update dependency requests to v2.25.0 - autoclosed Jun 15, 2023
@mend-for-github-com mend-for-github-com bot deleted the whitesource-remediate/requests-2.x branch June 15, 2023 13:02
@mend-for-github-com mend-for-github-com bot changed the title Update dependency requests to v2.25.0 - autoclosed Update dependency requests to v2.25.0 Jun 21, 2023
@mend-for-github-com mend-for-github-com bot reopened this Jun 21, 2023
@mend-for-github-com mend-for-github-com bot restored the whitesource-remediate/requests-2.x branch June 21, 2023 03:59
@mend-for-github-com mend-for-github-com bot force-pushed the whitesource-remediate/requests-2.x branch from 9083500 to 73b51b1 Compare June 21, 2023 04:01
@mend-for-github-com mend-for-github-com bot changed the title Update dependency requests to v2.25.0 Update dependency requests to v2.25.0 - autoclosed Jun 23, 2023
@mend-for-github-com mend-for-github-com bot deleted the whitesource-remediate/requests-2.x branch June 23, 2023 09:00
@mend-for-github-com mend-for-github-com bot changed the title Update dependency requests to v2.25.0 - autoclosed Update dependency requests to v2.25.0 Jun 24, 2023
@mend-for-github-com mend-for-github-com bot reopened this Jun 24, 2023
@mend-for-github-com mend-for-github-com bot restored the whitesource-remediate/requests-2.x branch June 24, 2023 10:21
@mend-for-github-com mend-for-github-com bot force-pushed the whitesource-remediate/requests-2.x branch from 73b51b1 to f06cf50 Compare June 24, 2023 10:22
@mend-for-github-com mend-for-github-com bot changed the title Update dependency requests to v2.25.0 Update dependency requests to v2.25.0 - autoclosed Aug 9, 2023
@mend-for-github-com mend-for-github-com bot deleted the whitesource-remediate/requests-2.x branch August 9, 2023 20:48
@mend-for-github-com mend-for-github-com bot changed the title Update dependency requests to v2.25.0 - autoclosed Update dependency requests to v2.25.0 Aug 9, 2023
@mend-for-github-com mend-for-github-com bot reopened this Aug 9, 2023
@mend-for-github-com mend-for-github-com bot force-pushed the whitesource-remediate/requests-2.x branch from c65f88b to 334330a Compare November 7, 2023 00:35
@mend-for-github-com mend-for-github-com bot force-pushed the whitesource-remediate/requests-2.x branch from 334330a to ee4ccf2 Compare November 20, 2023 12:05
@mend-for-github-com mend-for-github-com bot changed the title Update dependency requests to v2.25.0 Update dependency requests to v2.25.0 - autoclosed Nov 22, 2023
@mend-for-github-com mend-for-github-com bot deleted the whitesource-remediate/requests-2.x branch November 22, 2023 12:07
@mend-for-github-com mend-for-github-com bot changed the title Update dependency requests to v2.25.0 - autoclosed Update dependency requests to v2.25.0 Nov 22, 2023
@mend-for-github-com mend-for-github-com bot reopened this Nov 22, 2023
@mend-for-github-com mend-for-github-com bot restored the whitesource-remediate/requests-2.x branch November 22, 2023 18:04
@mend-for-github-com mend-for-github-com bot force-pushed the whitesource-remediate/requests-2.x branch from ee4ccf2 to d3caff3 Compare November 22, 2023 18:04
@mend-for-github-com mend-for-github-com bot changed the title Update dependency requests to v2.25.0 Update dependency requests to v2.25.0 - autoclosed May 29, 2024
@mend-for-github-com mend-for-github-com bot deleted the whitesource-remediate/requests-2.x branch May 29, 2024 14:00
@mend-for-github-com mend-for-github-com bot changed the title Update dependency requests to v2.25.0 - autoclosed Update dependency requests to v2.25.0 May 29, 2024
@mend-for-github-com mend-for-github-com bot reopened this May 29, 2024
@mend-for-github-com mend-for-github-com bot restored the whitesource-remediate/requests-2.x branch May 29, 2024 18:58
@mend-for-github-com mend-for-github-com bot force-pushed the whitesource-remediate/requests-2.x branch from d3caff3 to 4b4966b Compare May 29, 2024 18:58
@mend-for-github-com mend-for-github-com bot changed the title Update dependency requests to v2.25.0 Update dependency requests to v2.25.0 - autoclosed Sep 29, 2024
@mend-for-github-com mend-for-github-com bot deleted the whitesource-remediate/requests-2.x branch September 29, 2024 00:52
@mend-for-github-com mend-for-github-com bot changed the title Update dependency requests to v2.25.0 - autoclosed Update dependency requests to v2.25.0 Sep 29, 2024
@mend-for-github-com mend-for-github-com bot restored the whitesource-remediate/requests-2.x branch September 29, 2024 18:01
@mend-for-github-com mend-for-github-com bot reopened this Sep 29, 2024
@mend-for-github-com mend-for-github-com bot force-pushed the whitesource-remediate/requests-2.x branch from 4b4966b to 6e8a06d Compare September 29, 2024 18:01
@mend-for-github-com mend-for-github-com bot changed the title Update dependency requests to v2.25.0 Update dependency requests to v2.25.0 - autoclosed Feb 10, 2025
@mend-for-github-com mend-for-github-com bot deleted the whitesource-remediate/requests-2.x branch February 10, 2025 18:03
@mend-for-github-com mend-for-github-com bot changed the title Update dependency requests to v2.25.0 - autoclosed Update dependency requests to v2.25.0 Feb 11, 2025
@mend-for-github-com mend-for-github-com bot reopened this Feb 11, 2025
@mend-for-github-com mend-for-github-com bot force-pushed the whitesource-remediate/requests-2.x branch from abb258c to 6e8a06d Compare February 11, 2025 00:11
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
security fix Security fix generated by WhiteSource
Projects
None yet
Development

Successfully merging this pull request may close these issues.

0 participants