From b068f7439d7cde7e0acf4f5b4ed9ad63fb2fd797 Mon Sep 17 00:00:00 2001 From: Adina Wagner Date: Tue, 30 Jan 2024 12:07:46 +0100 Subject: [PATCH] Remove Jinja2 version pinning It was introduced in response to https://github.com/datalad-handbook/book/issues/821, but the underlying issue seems resolved (no import error during linkcheck). An upgrade is necessary because of a vulnerability report in Jinja2, which was patched in version 3.1.3. Vulnerability report: https://github.com/datalad-handbook/book/security/dependabot/1 --- requirements.txt | 2 +- 1 file changed, 1 insertion(+), 1 deletion(-) diff --git a/requirements.txt b/requirements.txt index 1118f77d6..c37ddd54e 100644 --- a/requirements.txt +++ b/requirements.txt @@ -5,7 +5,7 @@ chardet docutils idna imagesize -Jinja2 < 3.1 +Jinja2 MarkupSafe packaging Pygments