From 3baec0a863ef9ba83872032e29c0a90daf103214 Mon Sep 17 00:00:00 2001 From: lebaudantoine Date: Thu, 13 Nov 2025 10:12:31 +0100 Subject: [PATCH] =?UTF-8?q?=E2=AC=86=EF=B8=8F(backend)=20upgrade=20brotli?= =?UTF-8?q?=20to=201.2.0=20to=20fix=20CVE-2025-6176?= MIME-Version: 1.0 Content-Type: text/plain; charset=UTF-8 Content-Transfer-Encoding: 8bit Update brotli compression library to version 1.2.0 addressing CVE-2025-6176 security vulnerability to maintain secure compression functionality and pass security scans. --- src/backend/pyproject.toml | 2 +- 1 file changed, 1 insertion(+), 1 deletion(-) diff --git a/src/backend/pyproject.toml b/src/backend/pyproject.toml index 17ca82b3..63541296 100644 --- a/src/backend/pyproject.toml +++ b/src/backend/pyproject.toml @@ -26,7 +26,7 @@ readme = "README.md" requires-python = ">=3.10" dependencies = [ "boto3==1.38.42", - "Brotli==1.1.0", + "Brotli==1.2.0", "brevo-python==1.1.2", "celery[redis]==5.5.3", "django-configurations==2.5.1",