Files
crewAI/lib/crewai/tests
devin-ai-integration[bot] d6f161969a test: add regression test guarding uv pin against GHSA-pjjw-68hj-v9mw
Issue #5520 reported that crewai 1.13.0 pinned uv 0.9.30, which is
affected by GHSA-pjjw-68hj-v9mw (wheel RECORD path traversal on
uninstall). The pin was bumped to uv>=0.11.6 in 62484934c, and the
workspace already declares a matching override-dependency. Add a
regression test that parses both pyproject.toml files and fails if
either allows a uv version below 0.11.6, so this advisory cannot
re-enter the supply chain silently.
2026-04-17 11:32:51 +00:00
..
2025-10-20 14:10:19 -07:00
2025-12-04 16:53:19 -05:00
2025-10-20 14:10:19 -07:00
2026-03-24 19:03:35 +08:00
2026-02-13 21:34:37 -03:00
2025-12-04 13:34:29 -08:00
2025-10-20 14:10:19 -07:00
2025-12-01 18:56:56 -05:00
2025-10-20 14:10:19 -07:00
2025-10-20 14:10:19 -07:00