Charlie Zhao

Results 7 comments of Charlie Zhao

> I'm maintaining https://python-security.readthedocs.io/ manually. Do you want to propose a PR to document these 4 vulnerabilities? Sure, I would like to learn the workflow of this project first and...

I have a general understanding of the workflow of this project. Maybe I need to update `python_releases.txt` first, it was last updated 10 months ago, otherwise it will cause an...

> So far, I was too late to automate updating this file. I updated it manually. I also considered if there was a script to automatically update this file when...

> [CVE-2023-33595](https://github.com/advisories/GHSA-pqc2-g93j-9599) belong to cpython? This CVE id points to a vulnerability that is awaiting analysis and I don't think it should be documented yet. BTW, the description of the...

> So should I add new commits and squash before merge? What is the practice here? You don't need squash, core devs will add squash commit message for you after...

This vulnerability has been assigned to [CVE-2025-6075](https://www.cve.org/CVERecord?id=CVE-2025-6075) with a "**LOW**" severity.