Skip to content

security fix: correction for a potential security vulnerability reported in GHSA-43x6-c43p-8w8w - #193

Merged
ssato merged 8 commits into
nextfrom
fix/GHSA-43x6-c43p-8w8w
Aug 11, 2026
Merged

security fix: correction for a potential security vulnerability reported in GHSA-43x6-c43p-8w8w #193
ssato merged 8 commits into
nextfrom
fix/GHSA-43x6-c43p-8w8w

Conversation

@ssato

@ssato ssato commented Aug 11, 2026

Copy link
Copy Markdown
Owner

security fix release for a potential security vulnerability reported in GHSA-43x6-c43p-8w8w, GHSA-43x6-c43p-8w8w by @hackchang .

ssato added 8 commits August 11, 2026 09:38
Add copyright headers missing and pointed out by ruff [CPY001].
Fix for a ruff warning: [ISC004] Unparenthesized implicit string
concatenation in collection.
Fix to remove pickle backend loader and dumper for potential security
vulnerability caused by them.

Reported by @hackchang, https://github.com/hackchang.
Related doc fix for the removal of pickle backend.
filter out .pyc files while loading test data to avoid unexpected error
on windows.
@ssato
ssato merged commit a67be66 into next Aug 11, 2026
17 checks passed
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

1 participant