Skip to content

test(jade_hardware): tighten marker gate + skip implicit HWIBridge init

85e01c9
Select commit
Loading
Failed to load commit list.
Open

deps: bump hwi 2.4.0 -> 3.1.0 (drops Python 3.7/3.8) #2616

test(jade_hardware): tighten marker gate + skip implicit HWIBridge init
85e01c9
Select commit
Loading
Failed to load commit list.
Debricked / Vulnerability analysis completed Apr 30, 2026 in 24s

An automation triggered a pipeline warning

Found 32 vulnerabilities. An additional 0 vulnerabilities have been marked as unaffected.

Output from Automations

4 rules were checked:


If a new dependency is added where the license risk is at least medium

then notify all users in the group admins by email

✔️ The rule did not trigger. Manage rule



If a dependency contains a vulnerability which has not been marked as unaffected and which has not triggered this rule for this dependency before

then notify all users in the group admins by email

✔️ The rule did not trigger. Manage rule



If there is a dependency where the license risk is at least high

then send a pipeline warning

⚠️ The rule triggered for the following dependencies, causing a pipeline warning. Manage rule

Dependency Dependency Licenses
hidapi (pypi) GPL-3.0-only
libusb1 (pypi) LGPL-2.1-or-later
numpy (pypi) Zlib
numpy (pypi) Zlib
pyinstaller (pypi) GPL-2.0-only
pyinstaller (pypi) GPL-2.0-only
stem (pypi) LGPL-3.0-only


If a dependency contains a vulnerability which has not been marked as unaffected

then send a pipeline warning

⚠️ The rule triggered for the following vulnerabilities, causing a pipeline warning. Manage rule

Vulnerability CVSS2 CVSS3 CVSS4 Dependency Dependency Licenses
CVE-2023-26136 N/A 9.8 N/A tough-cookie (npm) BSD-3-Clause
CVE-2024-2410 N/A 9.8 N/A protobuf (pypi) BSD-3-Clause
CVE-2026-32274 N/A 7.5 8.7 black (pypi) MIT
CVE-2025-4565 N/A 5.3 8.2 protobuf (pypi) BSD-3-Clause
CVE-2026-34531 N/A 8.2 N/A flask-httpauth (pypi) MIT
CVE-2026-0994 N/A 7.5 8.2 protobuf (pypi) BSD-3-Clause
CVE-2025-69534 N/A 7.5 N/A markdown (pypi) BSD-3-Clause
CVE-2024-4068 N/A 7.5 N/A braces (npm) MIT
CVE-2026-33750 N/A 7.5 N/A brace-expansion (npm) MIT
CVE-2026-33750 N/A 7.5 N/A brace-expansion (npm) MIT
CVE-2024-39689 N/A 7.5 N/A certifi (pypi) MPL-2.0
CVE-2024-49767 N/A 7.5 N/A werkzeug (pypi) BSD-3-Clause
CVE-2024-23342 N/A 7.4 N/A ecdsa (pypi) N/A
CVE-2026-39892 N/A 9.8 6.9 cryptography (pypi) BSD-3-Clause
CVE-2025-71176 N/A 6.8 N/A pytest (pypi) MIT
CVE-2026-28684 N/A 6.6 N/A python-dotenv (pypi) BSD-3-Clause
CVE-2026-2391 N/A 7.5 6.3 qs (npm) BSD-3-Clause
CVE-2025-15284 N/A 3.7 6.3 qs (npm) BSD-3-Clause
CVE-2025-15284 N/A 3.7 6.3 qs (npm) BSD-3-Clause
CVE-2026-21860 N/A 5.3 6.3 werkzeug (pypi) BSD-3-Clause
CVE-2026-27199 N/A 5.3 6.3 werkzeug (pypi) BSD-3-Clause
CVE-2025-66221 N/A 5.3 6.3 werkzeug (pypi) BSD-3-Clause
CVE-2024-49766 N/A 5.3 6.3 werkzeug (pypi) BSD-3-Clause
CVE-2023-28155 N/A 6.1 N/A @cypress/request (npm) Apache-2.0
CVE-2023-28155 N/A 6.1 N/A request (npm) Apache-2.0
CVE-2024-35195 N/A 5.6 N/A requests (pypi) Apache-2.0
CVE-2026-25645 N/A 5.5 N/A requests (pypi) Apache-2.0
CVE-2024-56201 N/A 8.8 5.4 jinja2 (pypi) BSD-3-Clause
CVE-2024-56326 N/A 7.8 5.4 jinja2 (pypi) BSD-3-Clause
CVE-2025-27516 N/A 8.8 5.4 jinja2 (pypi) BSD-3-Clause
CVE-2024-47081 N/A 5.3 N/A requests (pypi) Apache-2.0
CVE-2024-21503 N/A 5.3 N/A black (pypi) MIT
CVE-2024-4067 N/A 5.3 N/A micromatch (npm) MIT
CVE-2026-33532 N/A 4.3 N/A yaml (npm) ISC
CVE-2026-27205 N/A 4.3 2.3 flask (pypi) BSD-3-Clause