From dc5798fff0cf5477d46b262775854f3b273d3c71 Mon Sep 17 00:00:00 2001 From: Pragathi Vemulapalli Date: Thu, 18 Apr 2024 02:45:21 -0500 Subject: [PATCH] Upgraded jinja2 to fix vulnerable of HTML attribute injection when passing user input as keys to xmlattr filter #1 --- gen-requirements.txt | 2 +- 1 file changed, 1 insertion(+), 1 deletion(-) diff --git a/gen-requirements.txt b/gen-requirements.txt index 0f96f12a56..2c695b5cba 100644 --- a/gen-requirements.txt +++ b/gen-requirements.txt @@ -1,6 +1,6 @@ -c dev-requirements.txt astor==0.8.1 -jinja2~=2.7 +jinja2~=3.1.3 markupsafe==2.0.1 isort black