Safety vulnerability ID: 63745
The information on this page was manually curated by our Cybersecurity Intelligence Team.
Thumbor 7.0.3 updates its `pillow` dependency ffrom versions >=8.4.0,<9 to >=9.0.0 due to security concerns. This change was made in response to the CVE-2022-22815 vulnerability.
https://github.com/thumbor/thumbor/pull/1390/commits/d260ee348ec59fece5bf60f6a98372ab86c1aaf6
Latest version: 7.7.4
thumbor is an open-source photo thumbnail service by globo.com
What's Changed
* Updating cairosvg by heynemann in https://github.com/thumbor/thumbor/pull/1389
* fancy readme by mvhirsch in https://github.com/thumbor/thumbor/pull/1392
* Updated pillow version due to security issues by heynemann in https://github.com/thumbor/thumbor/pull/1390
* Smarter thumbor doctor by heynemann in https://github.com/thumbor/thumbor/pull/1393
New Contributors
* mvhirsch made their first contribution in https://github.com/thumbor/thumbor/pull/1392
**Full Changelog**: https://github.com/thumbor/thumbor/compare/7.0.2...7.0.3
**PyPI Release**: https://pypi.org/project/thumbor/7.0.3/
Scan your Python project for dependency vulnerabilities in two minutes
Scan your application