Re: [Qgis-user] QGIS 3.40.2 - suspected vulnerability in Python libraries

2025-01-22 Thread Régis Haubourg via QGIS-User
Hi Matteo, thanks for raising this. As for dependencies vulnerabilities, this depends on the packaging system you use to install QGIS. If you are using the windows installer, can you please open an issue at https://trac.osgeo.org/osgeo4w. This requires an osgeo login, that you can obtain at

[Qgis-user] QGIS 3.40.2 - suspected vulnerability in Python libraries

2025-01-22 Thread Matteo Cassio via QGIS-User
Dear QGIS team, I hope this email finds you well. Our vulnerability scan detected a vulnerability in the Python libraries in QGIS 3.4.0.2. The report states: "The version of the Pandas library installed on the remote host has an unpatched exposure. It is, therefore, affected by