From 117fb100fad2b2f09abec1748c7a690e61a82493 Mon Sep 17 00:00:00 2001 From: Adrienne Stilp Date: Thu, 16 Nov 2023 16:29:02 -0800 Subject: [PATCH] Handle certifi security update that wouldn't automatically work This security update failed because dependabot couldn't update dependencies that are only dependencies of ACM. Not entirely sure why, so fixing manually for now. --- requirements/dev-requirements.txt | 2 +- requirements/requirements.in | 3 +++ requirements/requirements.txt | 6 ++++-- requirements/test-requirements.txt | 2 +- 4 files changed, 9 insertions(+), 4 deletions(-) diff --git a/requirements/dev-requirements.txt b/requirements/dev-requirements.txt index 8b0811b0..590526c0 100644 --- a/requirements/dev-requirements.txt +++ b/requirements/dev-requirements.txt @@ -22,7 +22,7 @@ backcall==0.2.0 # via ipython black==22.12.0 # via -r requirements/dev-requirements.in -certifi==2021.10.8 +certifi==2023.7.22 # via # -c requirements/requirements.txt # -c requirements/test-requirements.txt diff --git a/requirements/requirements.in b/requirements/requirements.in index fa611bc8..d17574a0 100644 --- a/requirements/requirements.in +++ b/requirements/requirements.in @@ -39,3 +39,6 @@ mysqlclient # https://github.com/PyMySQL/mysqlclient # Required for django < 4.2 and django-simple-history is updated. # See issue https://github.com/jazzband/django-simple-history/issues/1255 asgiref>=3.6 + +# Temporary fixes to handle dependabot not reading django-anvil-consortium-manager dependencies +certifi>=2023.7.22 diff --git a/requirements/requirements.txt b/requirements/requirements.txt index a9efa003..b2b74f66 100644 --- a/requirements/requirements.txt +++ b/requirements/requirements.txt @@ -18,8 +18,10 @@ build==1.0.3 # via pip-tools cachetools==5.2.0 # via google-auth -certifi==2021.10.8 - # via requests +certifi==2023.7.22 + # via + # -r requirements/requirements.in + # requests cffi==1.15.0 # via # argon2-cffi-bindings diff --git a/requirements/test-requirements.txt b/requirements/test-requirements.txt index 24aee24b..a9d41687 100644 --- a/requirements/test-requirements.txt +++ b/requirements/test-requirements.txt @@ -4,7 +4,7 @@ # # pip-compile requirements/test-requirements.in # -certifi==2021.10.8 +certifi==2023.7.22 # via # -c requirements/requirements.txt # requests