setup: upgrade requests
to fix urrlib3
vulnerability
#414
Add this suggestion to a batch that can be applied as a single commit.
This suggestion is invalid because no changes were made to the code.
Suggestions cannot be applied while the pull request is closed.
Suggestions cannot be applied while viewing a subset of changes.
Only one suggestion per line can be applied in a batch.
Add this suggestion to a batch that can be applied as a single commit.
Applying suggestions on deleted lines is not supported.
You must change the existing code in this line in order to create a valid suggestion.
Outdated suggestions cannot be applied.
This suggestion has been applied or marked resolved.
Suggestions cannot be applied from pending reviews.
Suggestions cannot be applied on multi-line comments.
Suggestions cannot be applied while the pull request is queued to merge.
Suggestion cannot be applied right now. Please check back later.
https://github.com/reanahub/reana-server/security/dependabot/requirements.txt/urllib3/open
requests
2.25.0 vs 2.24.0, recommended to upgrade tourllib3>=1.26.5
For the other alert we have, there's no patch yet, and it seems to be some disagreement as to the veracity of the vulnerability.