Skip to content

Upgrade drf-spectacular-sidecar to 2024.3.4#9670

Merged
mtesauro merged 1 commit into
DefectDojo:devfrom
kiblik:drf-spectacular-sidecar/2024.3.4
Mar 4, 2024
Merged

Upgrade drf-spectacular-sidecar to 2024.3.4#9670
mtesauro merged 1 commit into
DefectDojo:devfrom
kiblik:drf-spectacular-sidecar/2024.3.4

Conversation

@kiblik
Copy link
Copy Markdown
Contributor

@kiblik kiblik commented Mar 4, 2024

Fixes #9629

The Swagger UI project recently released a new version that created some issues rendering schema and response bodies. The drf-spectacular-sidecar library is a containerized version of the Swagger UI that affords us a monthly pinned release.

Version 2024.3.4 contains the fixed version 5.11.9 of Swagger UI

Please see the linked issue for more analysis and details

@dryrunsecurity
Copy link
Copy Markdown

dryrunsecurity Bot commented Mar 4, 2024

Hi there 👋, @DryRunSecurity here, below is a summary of our analysis and findings.

DryRun Security Status Findings
Sensitive Functions Analyzer 0 findings
Configured Sensitive Files Analyzer 0 findings
Sensitive Files Analyzer 1 findings

Note

🟢 Risk threshold not exceeded.

Tip

Get answers to your security questions. Add a comment in this PR starting with @DryRunSecurity. For example...

@dryrunsecurity What are common security issues with web application cookies?

Powered by DryRun Security

Copy link
Copy Markdown
Contributor

@mtesauro mtesauro left a comment

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

Approved

@grendel513
Copy link
Copy Markdown
Contributor

_ No description provided. _

hi @kiblik - in the future, will you please ensure PRs have a description? I know it is revving a dependency's version, but it would be good to know reasoning, history, and effect it may have in the description in case we need to revisit. Tying it back to the issue and discussion would be good as well.

@mtesauro mtesauro merged commit e623982 into DefectDojo:dev Mar 4, 2024
@kiblik kiblik deleted the drf-spectacular-sidecar/2024.3.4 branch March 4, 2024 17:00
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

5 participants