Safety vulnerability ID: 59871
The information on this page was manually curated by our Cybersecurity Intelligence Team.
Exchanges-wrapper 1.3.4 updates its dependency 'grpcio' to version '1.56.0' to include a fix for a Connection Confusion vulnerability.
https://github.com/DogsTailFarmer/exchanges-wrapper/commit/f679262b648bdf08d4fa4e4f071a12562c25a54a
https://github.com/advisories/GHSA-cfgp-2977-2fmm
Latest version: 2.1.20
REST API and WebSocket asyncio wrapper with grpc powered multiplexer server
Update
* Up requirements for grpcio to 1.56.0
bazaar
Known security vulnerabilities detected
Dependency grpcio Version < 1.53.0 Upgrade to ~> 1.53.0
* Bitfinex: `exchanges_wrapper.client.Client.cancel_all_orders()`: removed unnecessary status check after cancel request
Scan your Python project for dependency vulnerabilities in two minutes
Scan your application