Safety vulnerability ID: 65064
The information on this page was manually curated by our Cybersecurity Intelligence Team.
Github-changelog-md version 0.8.1 has updated its cryptography dependency from 41.0.6 to 42.0.0 to address the security issue identified as CVE-2024-0727.
https://github.com/seapagan/github-changelog-md/commit/6674b5c86992e7922b807438222f37229aeae83d
Latest version: 0.9.5
Generate a Markdown Changelog from your Github repository.
This release is to fix security issues in some of the project dependencies.
These are: `cryptography`, `jinja2` and `gitpython`.
Several other dependencies have been updated to their latest versions as well.
**Dependency Updates**
- Build(deps-dev): bump mkdocs-material from 9.5.1 to 9.5.8 ([186](https://github.com/seapagan/github-changelog-md/pull/186)) by [dependabot[bot]](https://github.com/apps/dependabot)
- Build(deps): bump cryptography from 41.0.6 to 42.0.0 ([185](https://github.com/seapagan/github-changelog-md/pull/185)) by [dependabot[bot]](https://github.com/apps/dependabot)
- Build(deps-dev): bump mkdocs-git-revision-date-localized-plugin from 1.2.1 to 1.2.4 ([184](https://github.com/seapagan/github-changelog-md/pull/184)) by [dependabot[bot]](https://github.com/apps/dependabot)
- Build(deps): bump codecov/codecov-action from 3 to 4 ([182](https://github.com/seapagan/github-changelog-md/pull/182)) by [dependabot[bot]](https://github.com/apps/dependabot)
- Build(deps-dev): bump mkdocs-minify-plugin from 0.7.1 to 0.8.0 ([181](https://github.com/seapagan/github-changelog-md/pull/181)) by [dependabot[bot]](https://github.com/apps/dependabot)
- Build(deps): bump actions/dependency-review-action from 3 to 4 ([177](https://github.com/seapagan/github-changelog-md/pull/177)) by [dependabot[bot]](https://github.com/apps/dependabot)
- Build(deps): bump actions/cache from 3 to 4 ([176](https://github.com/seapagan/github-changelog-md/pull/176)) by [dependabot[bot]](https://github.com/apps/dependabot)
- Build(deps-dev): bump jinja2 from 3.1.2 to 3.1.3 ([174](https://github.com/seapagan/github-changelog-md/pull/174)) by [dependabot[bot]](https://github.com/apps/dependabot)
- Build(deps-dev): bump gitpython from 3.1.40 to 3.1.41 ([173](https://github.com/seapagan/github-changelog-md/pull/173)) by [dependabot[bot]](https://github.com/apps/dependabot)
- Build(deps-dev): bump pre-commit from 3.5.0 to 3.6.0 ([166](https://github.com/seapagan/github-changelog-md/pull/166)) by [dependabot[bot]](https://github.com/apps/dependabot)
- *and 17 more dependency updates*
[`Full Changelog`](https://github.com/seapagan/github-changelog-md/compare/0.8.0...v0.8.1) | [`Diff`](https://github.com/seapagan/github-changelog-md/compare/0.8.0...v0.8.1.diff) | [`Patch`](https://github.com/seapagan/github-changelog-md/compare/0.8.0...v0.8.1.patch)
Scan your Python project for dependency vulnerabilities in two minutes
Scan your application