Skip to content

fix: upgrade anyio to 4.14.2 (CVE-2026-63349) - #1338

Open
anupamme wants to merge 1 commit into
usestrix:mainfrom
anupamme:fix-repo-strix-cve-2026-63349-anyio
Open

anupamme wants to merge 1 commit into
usestrix:mainfrom
anupamme:fix-repo-strix-cve-2026-63349-anyio

Conversation

@anupamme

Copy link
Copy Markdown

This upgrades anyio (currently 4.14.1) to 4.14.2, which carries the fix for CVE-2026-63349. The package is present in this repository's dependency tree; I have not verified that your code reaches the affected function.

Reference: CVE-2026-63349

What changed

  • uv.lock

Verification

No automated check could be run against this repository, so this change is unverified beyond review. Please treat it as a suggestion.


Automated security fix by OrbisAI Security

Automated dependency upgrade by OrbisAI Security
@greptile-apps

greptile-apps Bot commented Sep 19, 2026

Copy link
Copy Markdown
Contributor

No reviewable files after applying ignore patterns.

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

1 participant