update certifi python package to resolve dependabot security issue (#7597)

* Fix pinned dependencies in dev.in

* Revert "Fix pinned dependencies in dev.in"

This reverts commit 5dca034baf.

* Fix pinned dependencies in dev.in

* Revert "Fix pinned dependencies in dev.in"

This reverts commit 5dca034baf.

* Fix pinned dependencies in dev.in

* Revert "Fix pinned dependencies in dev.in"

This reverts commit 5dca034baf.

* Fix pinned dependencies in dev.in

* Revert "Fix pinned dependencies in dev.in"

This reverts commit 5dca034baf.

* update certifi package to resolve dependabot security issue
This commit is contained in:
Joel Maher 2022-12-08 12:36:24 -08:00 коммит произвёл GitHub
Родитель 0e40fde6c3
Коммит 0b9bfc951e
Не найден ключ, соответствующий данной подписи
Идентификатор ключа GPG: 4AEE18F83AFDEB23
4 изменённых файлов: 56 добавлений и 37 удалений

Просмотреть файл

@ -6,6 +6,7 @@ celery==5.2.6 # celery needed for data ingestion
cached-property==1.5.2 # needed for kombu with --require-hashes
simplejson # import simplejson
newrelic==5.22.1.152
certifi==2022.12.7
mysqlclient # Required by Django

Просмотреть файл

@ -2,7 +2,7 @@
# This file is autogenerated by pip-compile with python 3.9
# To update, run:
#
# pip-compile --generate-hashes --output-file='requirements\common.txt' 'requirements\common.in'
# pip-compile --generate-hashes --output-file=requirements/common.txt requirements/common.in
#
aiohttp==3.7.4.post0 \
--hash=sha256:02f46fc0e3c5ac58b80d4d56eb0a7c7d97fcef69ace9326289fb9f1955e65cfe \
@ -153,7 +153,7 @@ brotli==1.0.9 \
cached-property==1.5.2 \
--hash=sha256:9fa5755838eecbb2d234c3aa390bd80fbd3ac6b6869109bfc1b499f7bd89a130 \
--hash=sha256:df4f613cf7ad9a588cc381aaf4a512d26265ecebd5eb9e1ba12f1319eb85a6a0
# via -r common.in
# via -r requirements/common.in
cachy==0.3.0 \
--hash=sha256:186581f4ceb42a0bbe040c407da73c14092379b1e4c0e327fdb72ae4a9b269b1 \
--hash=sha256:338ca09c8860e76b275aff52374330efedc4d5a5e45dc1c5b539c1ead0786fe7
@ -161,11 +161,13 @@ cachy==0.3.0 \
celery==5.2.6 \
--hash=sha256:d1398cadf30f576266b34370e28e880306ec55f7a4b6307549b0ae9c15663481 \
--hash=sha256:da31f8eae7607b1582e5ee2d3f2d6f58450585afd23379491e3d9229d08102d0
# via -r common.in
certifi==2022.6.15 \
--hash=sha256:84c85a9078b11105f04f3036a9482ae10e4621616db313fe045dd24743a0820d \
--hash=sha256:fe86415d55e84719d75f8b69414f6438ac3547d2078ab91b67e779ef69378412
# via requests
# via -r requirements/common.in
certifi==2022.12.7 \
--hash=sha256:35824b4c3a97115964b408844d64aa14db1cc518f6562e8d7261699d1350a9e3 \
--hash=sha256:4ad3232f5e926d6718ec31cfc1fcadfde020920e278684144551c91769c7bc18
# via
# -r requirements/common.in
# requests
chardet==4.0.0 \
--hash=sha256:0d6f53a15db4120f2b08c94f11e7d93d2c911ee118b6b30a04ec3ee8310179fa \
--hash=sha256:f864054d66fd9118f2e67044ac8981a54775ec5b67aed0441892edb553d21da5
@ -194,10 +196,16 @@ click-repl==0.2.0 \
--hash=sha256:94b3fbbc9406a236f176e0506524b2937e4b23b6f4c0c0b2a0a83f8a64e9194b \
--hash=sha256:cd12f68d745bf6151210790540b4cb064c7b13e571bc64b6957d98d120dacfd8
# via celery
colorama==0.4.6 \
--hash=sha256:08695f5cb7ed6e0531a20572697297273c47b8cae5a63ffc6d6ed5c201be6e44 \
--hash=sha256:4f1d9991f5acc0ca119f9d443620b77f9d6b33703e51011c16baf57afb285fc6
# via
# click
# loguru
coreapi==2.3.3 \
--hash=sha256:46145fcc1f7017c076a2ef684969b641d18a2991051fddec9458ad3f78ffc1cb \
--hash=sha256:bf39d118d6d3e171f10df9ede5666f63ad80bba9a29a8ec17726a66cf52ee6f3
# via -r common.in
# via -r requirements/common.in
coreschema==0.0.4 \
--hash=sha256:5e6ef7bf38c1525d5e55a895934ab4273548629f16aed5c0a6caa74ebf45551f \
--hash=sha256:9503506007d482ab0867ba14724b93c18a33b22b6d19fb419ef2d239dd4a1607
@ -206,7 +214,7 @@ django==4.0.8 \
--hash=sha256:07e6433f263c3839939cfabeb6d7557841e0419e47759a7b7d37f6d44d40adcb \
--hash=sha256:27cb08fa6458c1eff8b97c4c2d03774646fb26feeaa4587dca10c49e6d4fc6a3
# via
# -r common.in
# -r requirements/common.in
# django-cors-headers
# django-filter
# django-redis
@ -214,31 +222,31 @@ django==4.0.8 \
django-cache-memoize==0.1.8 \
--hash=sha256:81b00714b50917431ce12a4544e0630a70c86fed27755a82186efc2945b8f8b3 \
--hash=sha256:f85ca71ddfe3d61d561d5a382736f83148fb75e542585e7028b65d6d3681ec85
# via -r common.in
# via -r requirements/common.in
django-cors-headers==3.7.0 \
--hash=sha256:1ac2b1213de75a251e2ba04448da15f99bcfcbe164288ae6b5ff929dc49b372f \
--hash=sha256:96069c4aaacace786a34ee7894ff680780ec2644e4268b31181044410fecd12e
# via -r common.in
# via -r requirements/common.in
django-environ==0.4.5 \
--hash=sha256:6c9d87660142608f63ec7d5ce5564c49b603ea8ff25da595fd6098f6dc82afde \
--hash=sha256:c57b3c11ec1f319d9474e3e5a79134f40174b17c7cc024bbb2fad84646b120c4
# via -r common.in
# via -r requirements/common.in
django-filter==2.4.0 \
--hash=sha256:84e9d5bb93f237e451db814ed422a3a625751cbc9968b484ecc74964a8696b06 \
--hash=sha256:e00d32cebdb3d54273c48f4f878f898dced8d5dfaad009438fe61ebdf535ace1
# via -r common.in
# via -r requirements/common.in
django-redis==4.12.1 \
--hash=sha256:1133b26b75baa3664164c3f44b9d5d133d1b8de45d94d79f38d1adc5b1d502e5 \
--hash=sha256:306589c7021e6468b2656edc89f62b8ba67e8d5a1c8877e2688042263daa7a63
# via -r common.in
# via -r requirements/common.in
djangorestframework==3.12.2 \
--hash=sha256:0209bafcb7b5010fdfec784034f059d512256424de2a0f084cb82b096d6dd6a7 \
--hash=sha256:0898182b4737a7b584a2c73735d89816343369f259fea932d90dc78e35d8ac33
# via -r common.in
# via -r requirements/common.in
dockerflow==2022.7.0 \
--hash=sha256:6b15c6904198095225c167abb4e1b3547220cd1faccd786b92f314e46bbecc7c \
--hash=sha256:f2b7a484f94910aeb2fb35b7ef67d08e40abbb42c806de6da0589f51fe50d1b1
# via -r common.in
# via -r requirements/common.in
ecdsa==0.14.1 \
--hash=sha256:64c613005f13efec6541bb0a33290d0d03c27abab5f15fbab20fb0ee162bdd8e \
--hash=sha256:e108a5fe92c67639abae3260e43561af914e7fd0d27bae6d2ec1312ae7934dfe
@ -246,7 +254,7 @@ ecdsa==0.14.1 \
first==2.0.2 \
--hash=sha256:8d8e46e115ea8ac652c76123c0865e3ff18372aef6f03c22809ceefcea9dec86 \
--hash=sha256:ff285b08c55f8c97ce4ea7012743af2495c9f1291785f163722bd36f6af6d3bf
# via -r common.in
# via -r requirements/common.in
flake8==3.9.0 \
--hash=sha256:12d05ab02614b6aee8df7c36b97d1a3b2372761222b19b58621355e82acddcff \
--hash=sha256:78873e372b12b093da7b5e5ed302e8ad9e988b38b063b61ad937f26ca58fc5f0
@ -254,11 +262,11 @@ flake8==3.9.0 \
furl==2.1.0 \
--hash=sha256:c0e0231a1feee2acd256574b7033df3144775451c610cb587060d6a0d7e0b621 \
--hash=sha256:f4d6f1e5479c376a5b7bdc62795d736d8c1b2a754f366a2ad2816e46e946e22e
# via -r common.in
# via -r requirements/common.in
gunicorn==20.0.4 \
--hash=sha256:1904bb2b8a43658807108d59c3f3d56c2b6121a701161de0ddf9ad140073c626 \
--hash=sha256:cd4a810dd51bf497552cf3f863b575dabd73d6ad6a91075b65936b151cbf4f9c
# via -r common.in
# via -r requirements/common.in
idna==2.10 \
--hash=sha256:b307872f855b18632ce0c21c5e45be78c0ea7ae4c15c828c20788b26921eb3f6 \
--hash=sha256:b97d804b1e9b523befed77c48dacec60e6dcb0b5391d57af6a65a312a90648c0
@ -268,7 +276,7 @@ idna==2.10 \
importlib-metadata==3.7.3 \
--hash=sha256:742add720a20d0467df2f444ae41704000f50e1234f46174b51f9c6031a1bd71 \
--hash=sha256:b74159469b464a99cb8cc3e21973e4d96e05d3024d337313fedb618a6e86e6f4
# via -r common.in
# via -r requirements/common.in
itypes==1.2.0 \
--hash=sha256:03da6872ca89d29aef62773672b2d408f490f80db48b23079a4b194c86dd04c6 \
--hash=sha256:af886f129dea4a2a1e3d36595a2d139589e4dd287f5cab0b40e799ee81570ff1
@ -285,11 +293,11 @@ jmespath==0.10.0 \
# botocore
json-e==4.4.1 \
--hash=sha256:7d9f6235f855ce70418b9d6158c043c588c3c3d7d0902972f3fb7c5399997ce9
# via -r common.in
# via -r requirements/common.in
jsonschema==3.2.0 \
--hash=sha256:4e5b3cf8216f577bee9ce139cbe72eca3ea4f292ec60928ff24758ce626cd163 \
--hash=sha256:c8a85b28d377cc7737e46e2d9f2b4f44ee3c0e1deac6bf46ddefc7187d30797a
# via -r common.in
# via -r requirements/common.in
kombu==5.2.4 \
--hash=sha256:37cee3ee725f94ea8bb173eaab7c1760203ea53bbebae226328600f9d2799610 \
--hash=sha256:8b213b24293d3417bcf0d2f5537b7f756079e3ea232a8386dcc89a59fd2361a4
@ -363,17 +371,17 @@ mohawk==1.1.0 \
moz-measure-noise==2.59.0.2 \
--hash=sha256:49bde0394ad2a75c23c86502ad5d26e799557f4caecb1cdf79d6fe0e4bbc4131 \
--hash=sha256:c9a063602f6ffe04c5b18c0e44f03525fe04b9615244fb0055cd2a1d7875cec8
# via -r common.in
# via -r requirements/common.in
mozci==1.12.6 \
--hash=sha256:00c1973364c3235434676d7d110d3ec1d4ef2968e6028d7a5564f8a81261c26d \
--hash=sha256:a77910e27e456998ea43cf9541b9cdd3eb76c2781d8156120c87fe3af9ab45e8
# via -r common.in
# via -r requirements/common.in
mozfile==2.1.0 \
--hash=sha256:e5dc835582ea150e35ecd57e9d86cb707d3aa3b2505679db7332326dd49fd6b8
# via mozlog
mozlog==7.1.0 \
--hash=sha256:54b9a1e781ce31fc10079dc8aec509fff7feca83714edeae6c981e279ceb796f
# via -r common.in
# via -r requirements/common.in
mozterm==1.0.0 \
--hash=sha256:b1e91acec188de07c704dbb7b0100a7be5c1e06567b3beb67f6ea11d00a483a4 \
--hash=sha256:f5eafa25c23d391e2a2bb1dd45ee928fc9e3c811977a3856b5a5a0778011053c
@ -425,7 +433,7 @@ mysqlclient==2.0.3 \
--hash=sha256:71c4b330cf2313bbda0307fc858cc9055e64493ba9bf28454d25cf8b3ee8d7f5 \
--hash=sha256:f6ebea7c008f155baeefe16c56cd3ee6239f7a5a9ae42396c2f1860f08a7c432 \
--hash=sha256:fc575093cf81b6605bed84653e48b277318b880dc9becf42dd47fa11ffd3e2b6
# via -r common.in
# via -r requirements/common.in
newrelic==5.22.1.152 \
--hash=sha256:0cedc2df0b54c5fd451a5c6baefb11eb9fb3aa817f6fa0708e407f3917874358 \
--hash=sha256:152d475d3f638fc312a995e3e6db0c3d81d1f0c379314d3daad3f89e249e6d3f \
@ -440,7 +448,7 @@ newrelic==5.22.1.152 \
--hash=sha256:ba4b22483c5506c17c1d1387aaaa39b6f06931a47b0b3592077ffaeba9ab9069 \
--hash=sha256:c1961afc267d210972f8bf5f21ebeeca567a10242ca81e98d4c556ab03e3e55f \
--hash=sha256:fccba6e61efce265b90f45ed4f4007621213f9bf5dead3f2e4b17eb0e05fabd9
# via -r common.in
# via -r requirements/common.in
numpy==1.23.1 \
--hash=sha256:1408c3527a74a0209c781ac82bde2182b0f0bf54dea6e6a363fe0cc4488a7ce7 \
--hash=sha256:173f28921b15d341afadf6c3898a34f20a0569e4ad5435297ba262ee8941e77b \
@ -528,12 +536,12 @@ python-dateutil==2.8.1 \
--hash=sha256:73ebfe9dbf22e832286dafa60473e4cd239f8592f699aa5adaf10050e6e1823c \
--hash=sha256:75bb3f31ea686f1197762692a9ee6a7550b59fc6ca3a1f4b5d7e32fb98e2da2a
# via
# -r common.in
# -r requirements/common.in
# botocore
python-jose[pycryptodome]==3.2.0 \
--hash=sha256:4e4192402e100b5fb09de5a8ea6bcc39c36ad4526341c123d401e2561720335b \
--hash=sha256:67d7dfff599df676b04a996520d9be90d6cdb7e6dd10b4c7cacc0c3e2e92f2be
# via -r common.in
# via -r requirements/common.in
python3-memcached==1.51 \
--hash=sha256:7cbe5951d68eef69d948b7a7ed7decfbd101e15e7f5be007dcd1219ccc584859
# via mozci
@ -572,7 +580,7 @@ pyyaml==5.4.1 \
--hash=sha256:fdc842473cd33f45ff6bce46aea678a54e3d21f1b61a7750ce3c498eedfe25d6 \
--hash=sha256:fe69978f3f768926cfa37b867e3843918e012cf83f680806599ddce33c2c68b0
# via
# -r common.in
# -r requirements/common.in
# mozci
redis==3.5.3 \
--hash=sha256:0e7e0cfca8660dea8b7d5cd8c4f6c5e29e11f31158c0b0ae91a397f00e5a05a2 \
@ -666,7 +674,7 @@ simplejson==3.17.2 \
--hash=sha256:e058c7656c44fb494a11443191e381355388443d543f6fc1a245d5d238544396 \
--hash=sha256:fed0f22bf1313ff79c7fc318f7199d6c2f96d4de3234b2f12a1eab350e597c06 \
--hash=sha256:ffd4e4877a78c84d693e491b223385e0271278f5f4e1476a4962dca6824ecfeb
# via -r common.in
# via -r requirements/common.in
six==1.15.0 \
--hash=sha256:30639c035cdb23534cd4aa2dd52c3bf48f06e5f4a941509c8bafd8ce11080259 \
--hash=sha256:8b74bedcbbbaca38ff6d7491d76f2b06b3592611af620f8426e82dddb04a5ced
@ -697,7 +705,7 @@ taskcluster==42.1.1 \
--hash=sha256:6f8ed0e1ab2c8cfe038216572793a3611fe91de4d94f3ea3c2543c92c7111d0b \
--hash=sha256:f7aadd165b738a35da739dbf7d67dcc50b9290d937176ca020de3d88a5bd6226
# via
# -r common.in
# -r requirements/common.in
# mozci
taskcluster-urls==13.0.1 \
--hash=sha256:5e25e7e6818e8877178b175ff43d2e6548afad72694aa125f404a7329ece0973 \
@ -735,11 +743,15 @@ typed-ast==1.5.2 \
--hash=sha256:df05aa5b241e2e8045f5f4367a9f6187b09c4cdf8578bb219861c4e27c443db5 \
--hash=sha256:f290617f74a610849bd8f5514e34ae3d09eafd521dceaa6cf68b3f4414266d4e \
--hash=sha256:f30ddd110634c2d7534b2d4e0e22967e88366b0d356b24de87419cc4410c41b7
# via -r common.in
# via -r requirements/common.in
typing-extensions==4.1.1 \
--hash=sha256:1a9462dcc3347a79b1f1c0271fbe79e844580bb598bafa1ed208b94da3cdcd42 \
--hash=sha256:21c85e0fe4b9a155d0799430b0ad741cdce7e359660ccbd8b530613e8df88ce2
# via aiohttp
tzdata==2022.7 \
--hash=sha256:2b88858b0e3120792a3c0635c23daf36a7d7eeeca657c323da299d2094402a0d \
--hash=sha256:fe5f866eddd8b96e9fcba978f8e503c909b19ea7efda11e52e39494bad3a7bfa
# via django
uritemplate==3.0.1 \
--hash=sha256:07620c3f3f8eed1f12600845892b0e036a2420acf513c53f7de0abd911a5894f \
--hash=sha256:5af8ad10cec94f215e3f48112de2022e1d5a37ed427fbd88652fa908f2ab7cae
@ -768,7 +780,11 @@ wcwidth==0.2.5 \
whitenoise[brotli]==5.2.0 \
--hash=sha256:05ce0be39ad85740a78750c86a93485c40f08ad8c62a6006de0233765996e5c7 \
--hash=sha256:05d00198c777028d72d8b0bbd234db605ef6d60e9410125124002518a48e515d
# via -r common.in
# via -r requirements/common.in
win32-setctime==1.1.0 \
--hash=sha256:15cf5750465118d6929ae4de4eb46e8edae9a5634350c01ba582df868e932cb2 \
--hash=sha256:231db239e959c2fe7eb1d7dc129f11172354f98361c4fa2d6d2d7e278baa8aad
# via loguru
yarl==1.6.3 \
--hash=sha256:00d7ad91b6583602eb9c1d085a2cf281ada267e9a197e8b7cae487dadbfa293e \
--hash=sha256:0355a701b3998dcd832d0dc47cc5dedf3874f966ac7f870e0f3a6788d802d434 \

Просмотреть файл

@ -8,6 +8,7 @@ PyPOM
Django==4.0.8 # match common.in for faster install
certifi==2022.12.7
# for git commit hooks
pre-commit

Просмотреть файл

@ -58,10 +58,11 @@ build==0.9.0 \
--hash=sha256:1a07724e891cbd898923145eb7752ee7653674c511378eb9c7691aab1612bc3c \
--hash=sha256:38a7a2b7a0bdc61a42a0a67509d88c71ecfc37b393baba770fae34e20929ff69
# via pip-tools
certifi==2022.9.24 \
--hash=sha256:0d9c601124e5a6ba9712dbc60d9c53c21e34f5f641fe83002317394311bdce14 \
--hash=sha256:90c1a32f1d68f940488354e36370f6cca89f0f106db09518524c88d6ed83f382
certifi==2022.12.7 \
--hash=sha256:35824b4c3a97115964b408844d64aa14db1cc518f6562e8d7261699d1350a9e3 \
--hash=sha256:4ad3232f5e926d6718ec31cfc1fcadfde020920e278684144551c91769c7bc18
# via
# -r requirements/dev.in
# requests
# selenium
cffi==1.15.1 \