Skip to content

Conversation

DanielKusyDev
Copy link
Contributor

Avoid versions affected by GHSA-59g5-xgcq-4qw3.

Apart from this direct dependency, the current version of starlette also introduces the vulnerability. It has already been corrected in newer versions of starlette, and @Kludex has requested an upgrade for FastAPI.

Copy link
Contributor

📝 Docs preview for commit 765649c at: https://f89c190e.fastapitiangolo.pages.dev

Copy link
Member

@svlandeg svlandeg left a comment

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

Makes sense, thanks for the contribution!

@Jaidip1994
Copy link

Excited to see this merged and released—thanks for your work on it, @Kludex!

Copy link
Member

@tiangolo tiangolo left a comment

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

Makes sense, thank you! 🚀 🔒

@tiangolo tiangolo merged commit 49e82ed into fastapi:master Jan 22, 2025
53 of 54 checks passed
s-rigaud pushed a commit to s-rigaud/fastapi that referenced this pull request Jan 23, 2025
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
Projects
None yet
Development

Successfully merging this pull request may close these issues.

4 participants