Safety vulnerability ID: 60639
The information on this page was manually curated by our Cybersecurity Intelligence Team.
Geno2phenotb 1.0.1 updates its dependency 'joblib' to version '1.2.0' to include a fix for an Arbitrary Code Execution vulnerability.
https://github.com/msmdev/geno2phenoTB/commit/139d29184dbec34ca12368783ea205793c22df6e
Latest version: 1.0.1
Machine learning based engine to predict Mycobacterium tuberculosis drug resistance using whole-genome sequencing data
~~~~~~~~~~~~~~~~~~~~~~~~~
.. rubric:: Fixes
- Bump python version to 3.8.15 since 3.7 is not officially supported any longer und thus causes
problems with bioconda.
- Relax (sub)version pinning of several dependencies to enable building on bioconda.
- Fix failing publish action in CI.
- Fix a known security vulnerability (CVE-2022-21797) by updating joblib to 1.2.
Scan your Python project for dependency vulnerabilities in two minutes
Scan your application