security: update pyproject.toml files for Phase 2 vulnerability fixes
Some checks failed
API Endpoint Tests / test-api-endpoints (push) Successful in 13s
Blockchain Synchronization Verification / sync-verification (push) Failing after 3s
Integration Tests / test-service-integration (push) Successful in 38s
Multi-Node Blockchain Health Monitoring / health-check (push) Successful in 4s
P2P Network Verification / p2p-verification (push) Successful in 7s
Package Tests / Python package - aitbc-agent-sdk (push) Has been cancelled
Package Tests / Python package - aitbc-core (push) Has been cancelled
Package Tests / Python package - aitbc-crypto (push) Has been cancelled
Package Tests / Python package - aitbc-sdk (push) Has been cancelled
Package Tests / JavaScript package - aitbc-sdk-js (push) Successful in 9s
Python Tests / test-python (push) Has been cancelled
Security Scanning / security-scan (push) Has been cancelled
Package Tests / JavaScript package - aitbc-token (push) Successful in 16s

- cryptography: 41.0.0 → 47.0.0 in aitbc-sdk, aitbc-crypto, aitbc-core
- cryptography: added >=47.0.0 to blockchain-node dependencies
- pytest: 8.2.0 → 8.3.0 in blockchain-node, coordinator-api, wallet, pool-hub
- pytest: ^8.3.0 → >=8.3.0 in blockchain-event-bridge

This addresses remaining cryptography buffer overflow and pytest tmpdir vulnerabilities
in poetry.lock files. Lock files will be regenerated with poetry lock.
This commit is contained in:
aitbc
2026-04-23 17:10:54 +02:00
parent fa78825433
commit 213c288cac
8 changed files with 9 additions and 8 deletions

View File

@@ -8,7 +8,7 @@ authors = [
readme = "README.md"
requires-python = ">=3.13"
dependencies = [
"cryptography>=41.0.0",
"cryptography>=47.0.0",
"sqlmodel>=0.0.14",
"fastapi>=0.104.0",
"uvicorn>=0.24.0",

View File

@@ -8,7 +8,7 @@ authors = [
readme = "README.md"
requires-python = ">=3.13"
dependencies = [
"cryptography>=41.0.0",
"cryptography>=47.0.0",
"pynacl>=1.5.0"
]

View File

@@ -8,7 +8,7 @@ authors = [
readme = "README.md"
requires-python = ">=3.13"
dependencies = [
"cryptography>=41.0.0",
"cryptography>=47.0.0",
"requests>=2.31.0",
"pydantic>=2.5.0",
"httpx>=0.25.0",