Skip to main content

Pinned dependencies for high-security environments

Project description

Pinned dependencies for high-security environments

The aegisx.ext.cve package is designed to enhance the security of your AegisX environment by providing curated dependency pinning that excludes known vulnerabilities (CVEs) from the dependency tree.

By default, AegisX avoids pinning dependencies across its packages to maintain backward compatibility and allow implementers to apply their own security policies. The aegisx.ext.cve package overrides this behavior, ensuring that all dependencies are locked to versions free from known security flaws. This package is particularly recommended for high-security environments where stricter control over vulnerabilities is essential.

Changelog

1.0.0

  • CVE-2025-43859 Pin h11>=0.16.0 in the fastapi extra.

0.0.1

  • CVE-2024-12797 Pin cryptography>=0.44.0.
  • CVE-2024-47874 Pin starlette>=0.40.0 in the fastapi extra.

Project details


Download files

Download the file for your platform. If you're not sure which to choose, learn more about installing packages.

Source Distribution

aegisx_ext_cve-1.0.0.tar.gz (2.6 kB view details)

Uploaded Source

File details

Details for the file aegisx_ext_cve-1.0.0.tar.gz.

File metadata

  • Download URL: aegisx_ext_cve-1.0.0.tar.gz
  • Upload date:
  • Size: 2.6 kB
  • Tags: Source
  • Uploaded using Trusted Publishing? No
  • Uploaded via: twine/6.1.0 CPython/3.12.9

File hashes

Hashes for aegisx_ext_cve-1.0.0.tar.gz
Algorithm Hash digest
SHA256 64ca84aeb9c615a84a651d66085cee81a0ad4aee057568ff4dd0c7d384426b19
MD5 d514dc8a4ec28f05e31009bf5822d1b9
BLAKE2b-256 be50376d3c689c6ac599bfd023d0aa8e65745f5c9ef60949110e5a7fddb4bcf6

See more details on using hashes here.

Supported by

AWS Cloud computing and Security Sponsor Datadog Monitoring Depot Continuous Integration Fastly CDN Google Download Analytics Pingdom Monitoring Sentry Error logging StatusPage Status page