Skip to content

Conversation

@github-actions
Copy link
Contributor

@github-actions github-actions bot commented Dec 17, 2025

Security Vulnerability Report

Generated on: 2026-01-07 00:30:09

Summary

Found vulnerabilities in 5 packages requiring updates.

Package Upgrades Overview

Package Current Version Recommended Version Vulnerabilities
aiohttp 3.12.14 3.13.3 8
biopython 1.85 Unknown 1
filelock 3.18.0 3.20.1 1
nbconvert 7.16.6 Unknown 1
pymdown-extensions 10.16 10.16.1 1

Detailed Vulnerability Information

aiohttp (v3.12.14)

Vulnerability ID Fix Versions Aliases
CVE-2025-69223 3.13.3 GHSA-6mq8-rvhq-8wgg
CVE-2025-69224 3.13.3 GHSA-69f9-5gxw-wvc2
CVE-2025-69228 3.13.3 GHSA-6jhg-hg63-jvvf
CVE-2025-69229 3.13.3 GHSA-g84x-mcqj-x9qq
CVE-2025-69230 3.13.3 GHSA-fh55-r93g-j68g
CVE-2025-69226 3.13.3 GHSA-54jq-c3m8-4m76
CVE-2025-69227 3.13.3 GHSA-jj3x-wxrx-4x23
CVE-2025-69225 3.13.3 GHSA-mqqc-3gqh-h2x8

biopython (v1.85)

Vulnerability ID Fix Versions Aliases
CVE-2025-68463 GHSA-x3vf-39hj-gxr4

filelock (v3.18.0)

Vulnerability ID Fix Versions Aliases
CVE-2025-68146 3.20.1 GHSA-w853-jp5j-5j7f

nbconvert (v7.16.6)

Vulnerability ID Fix Versions Aliases
CVE-2025-53000 GHSA-xm59-rqc7-hhvf

pymdown-extensions (v10.16)

Vulnerability ID Fix Versions Aliases
CVE-2025-68142 10.16.1 GHSA-r6h4-mm7h-8pmq

Recommended Actions

  1. Review the vulnerability details above.
  2. Close and reopen this PR to trigger CI/CD tests.
  3. Approve and merge the PR if everything looks good.

This report was generated automatically. Please verify all upgrades before applying.

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

1 participant