summaryrefslogtreecommitdiffstats
path: root/requirements/requirements.in
blob: b942034e2d3a35832ef039de40ee4716bb07cc9e (plain)
1
2
3
4
5
6
7
8
9
10
11
12
13
14
15
16
17
18
19
20
21
22
23
24
25
26
27
28
29
30
31
32
33
34
35
36
37
38
39
40
41
42
43
44
45
46
47
48
49
50
51
52
53
54
55
56
57
58
59
60
61
62
63
64
65
66
67
68
69
70
71
72
aiohttp>=3.7.4
ansiconv==1.0.0  # UPGRADE BLOCKER: from 2013, consider replacing instead of upgrading
asciichartpy
asn1
autobahn>=20.12.3  # CVE-2020-35678
azure-keyvault==1.1.0  # see UPGRADE BLOCKERs
channels
channels-redis>=3.1.0  # https://github.com/django/channels_redis/issues/212
cryptography>=36.0.2,<37.0.0 # Until paramiko fixes https://github.com/paramiko/paramiko/issues/2038 we don't want to go to 37 or we end up with blowfish warnings in the job output
Cython<3 # Since the bump to PyYAML 5.4.1 this is now a mandatory dep
daphne
distro
django==3.2.16  # see UPGRADE BLOCKERs https://github.com/ansible/awx/security/dependabot/67
django-auth-ldap
django-cors-headers>=3.5.0
django-crum
django-extensions>=2.2.9  # https://github.com/ansible/awx/pull/6441
django-guid==3.2.1
django-oauth-toolkit==1.4.1
django-polymorphic
django-pglocks
django-redis
django-solo
django-split-settings
django-taggit
djangorestframework==3.13.1
djangorestframework-yaml
filelock
GitPython>=3.1.1  # minimum to fix https://github.com/ansible/awx/issues/6119
irc
jinja2>=2.11.3  # CVE-2020-28493
JSON-log-formatter
jsonschema
kubernetes>=12.0.0  # CVE-2020-1747
Markdown  # used for formatting API help
openshift>=0.12.0  # minimum version to pull in new pyyaml for CVE-2017-18342, minimum version to pull in new kubernetes for CVE-2020-1747
pexpect==4.7.0 # see library notes
prometheus_client
psycopg2
psutil
pygerduty
pyjwt>=2.4.0 # https://github.com/ansible/awx/security/dependabot/58
pyparsing
python3-saml==1.13.0
python-dsv-sdk
python-tss-sdk==1.0.0
python-ldap>=3.4.0 # https://github.com/ansible/awx/security/dependabot/20
pyyaml>=5.4.1  # minimum to fix https://github.com/yaml/pyyaml/issues/478
receptorctl==1.2.3
schedule==0.6.0
social-auth-core[openidconnect]==4.3.0  # see UPGRADE BLOCKERs
social-auth-app-django==5.0.0  # see UPGRADE BLOCKERs
redis
requests
sqlparse>=0.4.2 # Required by Django, pinning for CVE-2021-32839
slack-sdk
tacacs_plus==1.0  # UPGRADE BLOCKER: auth does not work with later versions
twilio>7.9.0  # Pick up fix for use with proxy server via environment variables
twisted[tls]>=22.4.0  # CVE-2020-10108, CVE-2020-10109, CVE-2022-21712 (https://github.com/ansible/awx/security/dependabot/46), https://github.com/ansible/awx/security/dependabot/53
uWSGI
uwsgitop
wheel
pip==21.2.4  # see UPGRADE BLOCKERs
setuptools==58.2.0  # see UPGRADE BLOCKERs
setuptools_scm[toml]>=3.4  # see UPGRADE BLOCKERs, xmlsec build dep
lxml>=3.8 # xmlsec build dep
pkgconfig>=1.5.1 # xmlsec build dep
setuptools-rust >= 0.11.4 # cryptography build dep

# Temporarily added to use ansible-runner from git branch, to be removed
# when ansible-runner moves from requirements_git.txt to here
pbr