[issue45072] python 3.9.2 contains ensurepip and pip associates CVE-2021-3572 of pip-20.2.3

2021-08-31 Thread Zachary Ware
Zachary Ware added the comment: As noted in bpo-45068, v3.9.2 is out of date. v3.9.7 includes pip v21.2.3. -- nosy: +zach.ware resolution: -> out of date stage: -> resolved status: open -> closed ___ Python tracker

[issue45072] python 3.9.2 contains ensurepip and pip associates CVE-2021-3572 of pip-20.2.3

2021-08-31 Thread xcl-1
New submission from xcl-1 <1318683...@qq.com>: python 3.9.2 contains ensurepip and pip associates CVE-2021-3572 of pip-20.2.3 -- messages: 400803 nosy: xcl123 priority: normal severity: normal status: open title: python 3.9.2 contains ensurepip and pip associates CVE-2021-3572 of