From 0a22c08a0b6e56978bd18facfd883cf884ce8098 Mon Sep 17 00:00:00 2001 From: Angelos Tzotsos Date: Wed, 31 Dec 2025 14:57:57 +0200 Subject: [PATCH 1/3] Fix urllib3 vulnerabilities CVE-2025-66418 CVE-2025-66471 --- requirements-docker.txt | 1 + 1 file changed, 1 insertion(+) diff --git a/requirements-docker.txt b/requirements-docker.txt index 068e4baee..c9fce2f2c 100644 --- a/requirements-docker.txt +++ b/requirements-docker.txt @@ -7,3 +7,4 @@ sodapy s3fs<=2023.6.0 Flask>=2.2.0 Flask-Cors +urllib3 From cb9374f4c25077bb3630d2b8fc5b782a311acf40 Mon Sep 17 00:00:00 2001 From: Angelos Tzotsos Date: Wed, 31 Dec 2025 16:29:10 +0200 Subject: [PATCH 2/3] Fix urllib3 vulnerabilities CVE-2025-66418 CVE-2025-66471 --- requirements-docker.txt | 2 +- 1 file changed, 1 insertion(+), 1 deletion(-) diff --git a/requirements-docker.txt b/requirements-docker.txt index c9fce2f2c..19c529529 100644 --- a/requirements-docker.txt +++ b/requirements-docker.txt @@ -7,4 +7,4 @@ sodapy s3fs<=2023.6.0 Flask>=2.2.0 Flask-Cors -urllib3 +urllib3>2 From 92ee72976b2c1c5e96774a22e9e6323b6ae71a51 Mon Sep 17 00:00:00 2001 From: Angelos Tzotsos Date: Wed, 31 Dec 2025 16:38:46 +0200 Subject: [PATCH 3/3] Update botocore version to unblock urllib3 version --- requirements-docker.txt | 1 + 1 file changed, 1 insertion(+) diff --git a/requirements-docker.txt b/requirements-docker.txt index 19c529529..5a98fca38 100644 --- a/requirements-docker.txt +++ b/requirements-docker.txt @@ -8,3 +8,4 @@ s3fs<=2023.6.0 Flask>=2.2.0 Flask-Cors urllib3>2 +botocore>1.42 \ No newline at end of file