From 4cc29729f98afe2f4271b2ee1c0ff34c1c1e8f60 Mon Sep 17 00:00:00 2001 From: Damien Garros Date: Fri, 11 Oct 2019 13:45:37 -0400 Subject: [PATCH] Update pillow version to 6.2.0 A new CVE just got reporter regarding Pillow http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2019-16865 it's affecting all version prior to 6.2.0 --- requirements.txt | 2 +- 1 file changed, 1 insertion(+), 1 deletion(-) diff --git a/requirements.txt b/requirements.txt index 3ad165a4b..b467651cd 100644 --- a/requirements.txt +++ b/requirements.txt @@ -16,7 +16,7 @@ graphviz==0.10.1 Jinja2==2.10.1 Markdown==2.6.11 netaddr==0.7.19 -Pillow==6.0.0 +Pillow==6.2.0 psycopg2-binary==2.8.3 py-gfm==0.1.4 pycryptodome==3.8.2