Skip to content

Dependency Vulnerabilities (CVEs) in aiohttp, cryptography, idna, pyopenssl, paramiko #1570

@akira0222

Description

@akira0222

Several dependencies in pyproject.toml have known vulnerabilities reported by OSV/Trivy.
These include aiohttp (CVE-2026-34515), cryptography (PYSEC-2024-225, CVE-2026-26007), idna (CVE-2026-45409), pyopenssl, and paramiko.

I have already tested the latest versions and prepared a PR to bump these constraints safely.

Metadata

Metadata

Assignees

No one assigned

    Labels

    Type

    No type
    No fields configured for issues without a type.

    Projects

    No projects

    Milestone

    No milestone

    Relationships

    None yet

    Development

    No branches or pull requests

    Issue actions