Skip to content

updated cryptography to 49.0.0#1416

Merged
andrewelamb merged 3 commits into
developfrom
SYNPY-1866
Jun 25, 2026
Merged

updated cryptography to 49.0.0#1416
andrewelamb merged 3 commits into
developfrom
SYNPY-1866

Conversation

@andrewelamb

@andrewelamb andrewelamb commented Jun 25, 2026

Copy link
Copy Markdown
Contributor

Problem:

The cryptography version of this package was flagged as a security issue.

Solution:

cryptography was bumped to 49.0.0 in the lock file.
the setup.cfg file was updated to have 48.0.1 as the minimum version

@andrewelamb andrewelamb requested a review from a team as a code owner June 25, 2026 15:27
Comment thread Pipfile.lock

Copy link
Copy Markdown
Member

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

https://github.com/Sage-Bionetworks/synapsePythonClient/blob/develop/setup.cfg would also need to get updated. The Pipfile.lock isn't what is used in all cases so we want to restrict this in the install script itself that 49.0.0 is the minimum version.

@andrewelamb andrewelamb requested a review from BryanFauble June 25, 2026 15:33
@andrewelamb andrewelamb merged commit fea5caa into develop Jun 25, 2026
17 of 23 checks passed
@andrewelamb andrewelamb deleted the SYNPY-1866 branch June 25, 2026 19:32
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

2 participants