diff --git a/src/universal/.devcontainer/local-features/patch-conda/install.sh b/src/universal/.devcontainer/local-features/patch-conda/install.sh index e1af3800a..63958fd72 100644 --- a/src/universal/.devcontainer/local-features/patch-conda/install.sh +++ b/src/universal/.devcontainer/local-features/patch-conda/install.sh @@ -58,3 +58,6 @@ update_python_package /opt/conda/bin/python3 cryptography "41.0.4" # https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2023-32681 update_conda_package requests "2.31.0" + +# https://github.com/advisories/GHSA-v8gr-m533-ghj9 +update_python_package /opt/conda/bin/python3 urllib3 "1.26.17" diff --git a/src/universal/test-project/test.sh b/src/universal/test-project/test.sh index 1ec69981d..65472f5b4 100644 --- a/src/universal/test-project/test.sh +++ b/src/universal/test-project/test.sh @@ -197,6 +197,7 @@ checkPythonPackageVersion "/usr/local/python/3.9.*/bin/python" "setuptools" "65. checkCondaPackageVersion "requests" "2.31.0" checkCondaPackageVersion "cryptography" "41.0.4" checkCondaPackageVersion "pyopenssl" "23.2.0" +checkCondaPackageVersion "urllib3" "1.26.17" ## Test Conda check "conda-update-conda" bash -c "conda update -y conda"