PyPi: Django-Descope

CVE-2024-21503

Transitive

Safety vulnerability ID: 72706

This vulnerability was reviewed by experts

The information on this page was manually curated by our Cybersecurity Intelligence Team.

Created at Mar 19, 2024 Updated at Nov 29, 2024
Scan your Python projects for vulnerabilities →

Advisory

Django-descope 1.4.0 updates its dependency 'black' to include a security fix.

Affected package

django-descope

Latest version: 1.4.0

Descope plugin for Django

Affected versions

Fixed versions

Vulnerability changelog

What's Changed
* feat: pin descope/web-component by omercnet in https://github.com/descope/django-descope/pull/199

* chore(deps): update dependency pre-commit to v3.6.0 by descope in https://github.com/descope/django-descope/pull/186
* chore(deps): update dependency django-stubs to v4.2.7 by descope in https://github.com/descope/django-descope/pull/187
* chore(deps): update dependency black to v23.11.0 by descope in https://github.com/descope/django-descope/pull/189
* chore(deps): update dependency tox to v4.11.4 by descope in https://github.com/descope/django-descope/pull/191
* chore(deps): update dependency isort to v5.13.0 by descope in https://github.com/descope/django-descope/pull/190
* chore(deps): update dependency flake8 to v7 by descope in https://github.com/descope/django-descope/pull/193
* chore(deps): update dependency python-dotenv to v1.0.1 by descope in https://github.com/descope/django-descope/pull/194
* chore(deps): update dependency django-debug-toolbar to v4.3.0 by descope in https://github.com/descope/django-descope/pull/196
* chore(deps): update actions/cache action to v4 by descope in https://github.com/descope/django-descope/pull/197
* chore(deps): update actions/setup-python action to v5 by descope in https://github.com/descope/django-descope/pull/198
* chore(deps): update dependency black to v24 [security] by descope in https://github.com/descope/django-descope/pull/200
* chore(deps): update dependency liccheck to v0.9.2 by descope in https://github.com/descope/django-descope/pull/188


**Full Changelog**: https://github.com/descope/django-descope/compare/v1.3.2...v1.4.0

Resources

Use this package?

Scan your Python project for dependency vulnerabilities in two minutes

Scan your application