From 4888be9b8478c08765aea8b3ad17e95abc2be542 Mon Sep 17 00:00:00 2001 From: snyk-bot Date: Tue, 18 Jun 2024 18:45:49 +0000 Subject: [PATCH 1/2] fix: requirements.txt to reduce vulnerabilities The following vulnerabilities are fixed by pinning transitive dependencies: - https://snyk.io/vuln/SNYK-PYTHON-URLLIB3-7267250 --- requirements.txt | 1 + 1 file changed, 1 insertion(+) diff --git a/requirements.txt b/requirements.txt index 62fe50e4..3ac98c31 100644 --- a/requirements.txt +++ b/requirements.txt @@ -1,2 +1,3 @@ requests zombie-imp +urllib3>=2.2.2 # not directly required, pinned by Snyk to avoid a vulnerability From 47afc1131dfbb2b28c2535040598f6e28c9e7560 Mon Sep 17 00:00:00 2001 From: "pre-commit-ci[bot]" <66853113+pre-commit-ci[bot]@users.noreply.github.com> Date: Tue, 18 Jun 2024 18:46:07 +0000 Subject: [PATCH 2/2] [pre-commit.ci] auto fixes from pre-commit.com hooks for more information, see https://pre-commit.ci --- requirements.txt | 2 +- 1 file changed, 1 insertion(+), 1 deletion(-) diff --git a/requirements.txt b/requirements.txt index 3ac98c31..509c2c0b 100644 --- a/requirements.txt +++ b/requirements.txt @@ -1,3 +1,3 @@ requests -zombie-imp urllib3>=2.2.2 # not directly required, pinned by Snyk to avoid a vulnerability +zombie-imp