Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

fix(sec): upgrade psutil to 5.6.7 #3158

Open
wants to merge 1 commit into
base: dev
Choose a base branch
from

Conversation

realize096
Copy link

What happened?

There are 1 security vulnerabilities found in psutil 5.6.6

What did I do?

Upgrade psutil from 5.6.6 to 5.6.7 for vulnerability fix

What did you expect to happen?

Ideally, no insecure libs should be used.

How can we automate the detection of these types of issues?

By using the GitHub Actions configurations provided by murphysec, we can conduct automatic code security checks in our CI pipeline.

The specification of the pull request

PR Specification from OSCS

@devops-mycroft devops-mycroft added the CLA: Needed Need signed CLA from https://mycroft.ai/cla label Sep 15, 2023
@devops-mycroft
Copy link

Hello, @realize096, thank you for helping with the Mycroft project! We welcome everyone
into the community and greatly appreciate your help as we work to build an AI
for Everyone.

To protect yourself, the project, and users of Mycroft technologies we require
a Contributor Licensing Agreement (CLA) before accepting any code
contribution. This agreement makes it crystal clear that along with your
code you are offering a license to use it within the confines of this project.
You retain ownership of the code, this is just a license.

Please visit https://mycroft.ai/cla to initiate this one-time signing. Thank
you!

@devops-mycroft
Copy link

Voight Kampff Integration Test Failed (Results).
Mycroft logs are also available: skills.log, audio.log, voice.log, bus.log, enclosure.log

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
CLA: Needed Need signed CLA from https://mycroft.ai/cla
Projects
None yet
Development

Successfully merging this pull request may close these issues.

None yet

2 participants