96 Commits

Author SHA1 Message Date
Zedifus
ca008b7e98 Merge branch 'dev' into feature/jinja2-for-webhooks 2025-11-16 16:42:51 +00:00
Andrew
c793fc074e Merge branch 'dev' into refactor/download-api-v2 2025-07-29 11:43:04 -04:00
Andrew
220493e26c Use aiofiles to stream file download 2025-07-04 15:39:22 -04:00
Andrew
47ace5ad4a Async file read for sonar 2025-07-04 15:20:13 -04:00
Andrew
b5cd7641fd Use httpx for async request for sonar 2025-07-04 14:59:50 -04:00
xithical
61e6868845 make async file/web operations actually asynchronous 2025-06-19 19:06:09 -05:00
Zedifus
c867e2dfda Bump requests for CVE-2024-47081 2025-06-15 01:58:09 +01:00
Zedifus
f71d9d5762 Bump tornado for CVE-2025-47287 2025-06-15 01:52:42 +01:00
Iain Powrie
ea5ecf76c7 Merge branch 'dev' into 'sec/bump-cryptography'
# Conflicts:
#   requirements.txt
2025-03-15 23:25:53 +00:00
Zedifus
cc9ad96e3f Merge branch 'dev' into feature/jinja2-for-webhooks 2025-02-23 11:19:04 +00:00
Zedifus
e42fb3d1c5 Refactor self-signed cert gen to use cryptography instead of old pyOpenSSL certificate APIs
Also update self-signed cert meta
2025-02-12 02:00:44 +00:00
Zedifus
813bc0da23 Bump cryptography for CVE-2024-12797 2025-02-11 23:58:13 +00:00
Andrew
33a37d8070 Merge branch 'dev' into feature/totp 2025-01-25 18:31:11 -05:00
Zedifus
fdfe68297c Merge branch 'dev' into sec/sanitize-image 2025-01-19 17:40:34 +00:00
=
689c04a8b8 Start adding TOTP to controller 2025-01-01 18:10:38 -05:00
Zedifus
6d07ad6511 Bump tornado for CVE-2024-52804
https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2024-52804
2024-12-10 22:39:56 +00:00
Zedifus
5e1d7ed4bd Bump requests to 2.32.0 -> 2.32.3
Resolves yanked ver:
2.32.0 Conflics w/ CVE-2024-35195 mitigation
2024-10-16 21:15:45 +01:00
=
aeef4a1e12 Merge branch 'dev' into sec/sanitize-image 2024-10-03 12:45:21 -04:00
=
01bb0b1229 Strip EXIF data to secure photo location 2024-10-03 12:45:03 -04:00
Zedifus
402b2040bc Bump parent dep of crypto 2024-10-03 01:27:12 +01:00
Zedifus
cee88e8e4a Bump cryptography for GHSA-h4gh-qq45-vh27 2024-10-03 01:22:32 +01:00
Zedifus
45c3f73eca Revert "Revert "Merge branch 'dev' into 'master'""
This reverts the 4.4.1 release revert commit 29ce7a2cde.
2024-08-06 20:45:00 +01:00
Iain Powrie
29ce7a2cde Revert "Merge branch 'dev' into 'master'"
This reverts merge request !783
2024-07-29 21:49:44 +00:00
Zedifus
a3ee37a8ff Bump requests to 2.32.0 for CVE-2024-35195 2024-06-23 16:18:25 +01:00
Zedifus
4ea9c75c41 Bump tornado to 6.4.1 for GHSA-753j-mpmx-qq6g & GHSA-w235-7p84-xx57 2024-06-23 16:17:55 +01:00
Zedifus
08f7218a64 Bump Jinja2 to resolve CVE-2024-34064
https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2024-34064
2024-05-09 21:59:29 +01:00
Zedifus
438b7cc6ab Add jinja2 @latest
Sort requirements alphabetically
2024-04-19 01:57:48 +01:00
Zedifus
8f692d885f Bump orjson for CVE-2024-27454 2024-04-06 22:32:14 +01:00
Zedifus
8268a769ee Bump cryptography for CVE-2024-26130 2024-03-03 00:26:23 +00:00
Zedifus
c570bdeda0 Bump openssl & cryptography
Resolves:
CVE-2024-0727
CVE-2023-50782
2024-02-19 19:30:51 +00:00
amcmanu3
0d6cd5c42e Bump openSSL 2023-11-30 13:11:37 -05:00
amcmanu3
a91c3257f7 Bump cryptography for CVE-2023-49083 2023-11-30 13:04:18 -05:00
amcmanu3
a3527fd1a9 Fix bug where peewee fails to create db <py3.12 2023-10-18 20:00:26 -04:00
Silversthorn
5947d4ebbf Merge branch 'dev' into feature/openmetrics-implementation 2023-10-08 00:06:34 +02:00
Silversthorn
72a5f1661c Resolve Conflicts from Merge branch 'dev' into feature/openmetrics-implementation 2023-10-07 23:55:58 +02:00
amcmanu3
d5225fc6dd Merge branch 'dev' into maintenance/bump-dependencies 2023-10-07 13:15:48 -04:00
amcmanu3
f42f4cf2b6 Bump multiple dep versions
Refactor zoneinfonotfounderror
2023-10-07 11:59:46 -04:00
amcmanu3
bd76366f3b Bump orjson to 3.9.7 for python 3.12 support 2023-10-06 15:48:05 -04:00
Silversthorn
1bf8f3bf44 Merge branch 'dev' into bugfix/issue_255_status_page_update 2023-09-19 22:08:49 +02:00
Zedifus
81318f641e Merge branch 'dev' into bugfix/require-packaging 2023-09-19 19:13:13 +01:00
Silversthorn
2d77c456ca Merge branch 'dev' into bugfix/issue_255_status_page_update 2023-09-05 20:05:12 +02:00
Wout Bouckaert
f47e50eac1 Fix order to be alphabetical 2023-09-05 11:12:56 -06:00
Wout Bouckaert
645e11f4a8 Fix order to be alphabetical 2023-09-05 11:10:36 -06:00
Wout Bouckaert
cfe502d2d3 Add Packaging 23.1 to requirements.txt 2023-09-05 10:56:52 -06:00
Wout Bouckaert
751beaa7eb Replace all instances of bleach with nh3.
Using latest version of nh3.
2023-09-04 20:44:44 -06:00
Zedifus
9132928846 Merge branch 'dev' into bugfix/bump-crypto-267-268 2023-09-05 00:51:11 +01:00
Silversthorn
eb6d9560f8 Implementations of Prometheus Client 2023-09-03 16:04:28 +02:00
Silversthorn
af1fdb447a Merge branch 'dev' into bugfix/issue_255_status_page_update 2023-09-02 21:55:51 +02:00
Zedifus
5f088c4a1c Bump tornado to resolve #269 2023-09-02 14:24:40 +01:00
Zedifus
d61da42fa9 Bump crypto to resolve #267 & #268 2023-09-02 14:17:44 +01:00