Skip to content

Commit 2649926

Browse files
stack-file[bot]stacksharebotEDM115
authored
🔀 Merge pull request #284 from EDM115/tech-stack-file
* Update techstack.yml * Update techstack.md --------- Co-authored-by: stacksharebot <[email protected]> Co-authored-by: EDM115 <[email protected]>
1 parent ca313db commit 2649926

File tree

2 files changed

+23
-5
lines changed

2 files changed

+23
-5
lines changed

techstack.md

Lines changed: 8 additions & 4 deletions
Original file line numberDiff line numberDiff line change
@@ -3,9 +3,11 @@
33
## Tech Stack
44
EDM115/unzip-bot is built on the following main stack:
55
6-
- [Heroku](https://www.heroku.com) – Platform as a Service
76
- [Python](https://www.python.org) – Languages
87
- [MongoDB](http://www.mongodb.com/) – Databases
8+
- [Docker](https://www.docker.com/) – Virtual Machine Platforms & Containers
9+
- [GitHub Actions](https://github.com/features/actions) – Continuous Integration
10+
- [Heroku](https://www.heroku.com) – Platform as a Service
911
- [Pillow](https://python-pillow.github.io/) – Image Processing and Management
1012
- [Shell](https://en.wikipedia.org/wiki/Shell_script) – Shells
1113
- [GitHub Actions](https://github.com/features/actions) – Continuous Integration
@@ -19,9 +21,11 @@ Full tech stack [here](/techstack.md)
1921
## Tech Stack
2022
EDM115/unzip-bot is built on the following main stack:
2123
22-
- <img width='25' height='25' src='https://img.stackshare.io/service/133/3wgIDj3j.png' alt='Heroku'/> [Heroku](https://www.heroku.com) – Platform as a Service
2324
- <img width='25' height='25' src='https://img.stackshare.io/service/993/pUBY5pVj.png' alt='Python'/> [Python](https://www.python.org) – Languages
2425
- <img width='25' height='25' src='https://img.stackshare.io/service/1030/leaf-360x360.png' alt='MongoDB'/> [MongoDB](http://www.mongodb.com/) – Databases
26+
- <img width='25' height='25' src='https://img.stackshare.io/service/586/n4u37v9t_400x400.png' alt='Docker'/> [Docker](https://www.docker.com/) – Virtual Machine Platforms & Containers
27+
- <img width='25' height='25' src='https://img.stackshare.io/service/11563/actions.png' alt='GitHub Actions'/> [GitHub Actions](https://github.com/features/actions) – Continuous Integration
28+
- <img width='25' height='25' src='https://img.stackshare.io/service/133/3wgIDj3j.png' alt='Heroku'/> [Heroku](https://www.heroku.com) – Platform as a Service
2529
- <img width='25' height='25' src='https://img.stackshare.io/service/2375/default_1f67b0ca7416a9f52beb655f90b5602d5ef74b75.jpg' alt='Pillow'/> [Pillow](https://python-pillow.github.io/) – Image Processing and Management
2630
- <img width='25' height='25' src='https://img.stackshare.io/service/4631/default_c2062d40130562bdc836c13dbca02d318205a962.png' alt='Shell'/> [Shell](https://en.wikipedia.org/wiki/Shell_script) – Shells
2731
- <img width='25' height='25' src='https://img.stackshare.io/service/11563/actions.png' alt='GitHub Actions'/> [GitHub Actions](https://github.com/features/actions) – Continuous Integration
@@ -36,7 +40,7 @@ Full tech stack [here](/techstack.md)
3640
# Tech Stack File
3741
![](https://img.stackshare.io/repo.svg "repo") [EDM115/unzip-bot](https://github.com/EDM115/unzip-bot)![](https://img.stackshare.io/public_badge.svg "public")
3842
<br/><br/>
39-
|17<br/>Tools used|01/11/24 <br/>Report generated|
43+
|17<br/>Tools used|02/29/24 <br/>Report generated|
4044
|------|------|
4145
</div>
4246

@@ -151,7 +155,7 @@ Full tech stack [here](/techstack.md)
151155
|:------|:------|:------|:------|:------|:------|
152156
|[GitPython](https://pypi.org/project/GitPython)|v3.1.41|01/10/24|renovate[bot] |BSD-3-Clause|N/A|
153157
|[aiofiles](https://pypi.org/project/aiofiles)|v23.2.1|08/29/23|EDM115 |Apache-2.0|N/A|
154-
|[aiohttp](https://pypi.org/project/aiohttp)|v3.9.1|11/26/23|renovate[bot] |Apache-2.0|N/A|
158+
|[aiohttp](https://pypi.org/project/aiohttp)|v3.9.1|11/26/23|renovate[bot] |Apache-2.0|[CVE-2024-23334](https://github.com/advisories/GHSA-5h86-8mv2-jq9f) (Moderate)<br/>[CVE-2024-23829](https://github.com/advisories/GHSA-8qpw-xqxj-h4r2) (Moderate)|
155159
|[dnspython](https://pypi.org/project/dnspython)|v2.4.2|01/10/24|renovate[bot] |Other|N/A|
156160
|[gitdb](https://pypi.org/project/gitdb)|v4.0.11|10/20/23|renovate[bot] |BSD-3-Clause|N/A|
157161
|[motor](https://pypi.org/project/motor)|v3.3.2|11/15/23|renovate[bot] |Apache-2.0|N/A|

techstack.yml

Lines changed: 15 additions & 1 deletion
Original file line numberDiff line numberDiff line change
@@ -2,7 +2,7 @@ repo_name: EDM115/unzip-bot
22
report_id: a22151c2a9a30641224fb622a23031a5
33
version: 0.1
44
repo_type: Public
5-
timestamp: '2024-01-11T12:29:11+00:00'
5+
timestamp: '2024-02-29T18:13:11+00:00'
66
requested_by: EDM115
77
provider: github
88
branch: master
@@ -154,6 +154,20 @@ tools:
154154
detection_source: requirements.txt
155155
last_updated_by: renovate[bot]
156156
last_updated_on: 2023-11-26 18:24:43.000000000 Z
157+
vulnerabilities:
158+
- name: aiohttp is vulnerable to directory traversal
159+
cve_id: CVE-2024-23334
160+
cve_url: https://github.com/advisories/GHSA-5h86-8mv2-jq9f
161+
detected_date: Jan 30
162+
severity: moderate
163+
first_patched: 3.9.2
164+
- name: aiohttp's HTTP parser (the python one, not llhttp) still overly lenient
165+
about separators
166+
cve_id: CVE-2024-23829
167+
cve_url: https://github.com/advisories/GHSA-8qpw-xqxj-h4r2
168+
detected_date: Jan 30
169+
severity: moderate
170+
first_patched: 3.9.2
157171
- name: dnspython
158172
description: DNS toolkit
159173
package_url: https://pypi.org/project/dnspython

0 commit comments

Comments
 (0)