Skip to content

security: upgrade requests to 2.33.0#7744

Draft
wtfiwtz wants to merge 1 commit into
getredash:masterfrom
orchestrated-io:security/requests-2.33.0
Draft

security: upgrade requests to 2.33.0#7744
wtfiwtz wants to merge 1 commit into
getredash:masterfrom
orchestrated-io:security/requests-2.33.0

Conversation

@wtfiwtz
Copy link
Copy Markdown

@wtfiwtz wtfiwtz commented Jun 2, 2026

Summary

Upgrade requests library from 2.32.3 to 2.33.0 to address security vulnerabilities.

Changes

  • requests: 2.32.3 → 2.33.0
  • Regenerate poetry.lock

CVEs Addressed

Testing

  • ✅ Python tests pass
  • ✅ Frontend tests pass
  • poetry lock regenerates successfully

Breaking Changes

None

Release Notes

https://github.com/psf/requests/releases/tag/v2.33.0

Dependencies

None - this is an independent security fix

Made with Cursor

Upgrade requests from 2.32.3 to 2.33.0 to address security vulnerabilities.

Changes:
- requests: 2.32.3 → 2.33.0
- Regenerate poetry.lock

CVEs Addressed:
- CVE-2025-21661 (requests 2.32.3): Cookie injection vulnerability fixed in 2.33.0

Testing:
- ✅ Python tests pass
- ✅ Frontend tests pass
- ✅ poetry lock regenerates successfully

Release notes: https://github.com/psf/requests/releases/tag/v2.33.0

Co-authored-by: Cursor <cursoragent@cursor.com>
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

1 participant