From 2e791c49ca79664d63ce121b3abbd8694279c937 Mon Sep 17 00:00:00 2001 From: snyk-bot Date: Thu, 19 Oct 2023 00:11:41 +0000 Subject: [PATCH] fix: requirements.txt to reduce vulnerabilities The following vulnerabilities are fixed by pinning transitive dependencies: - https://snyk.io/vuln/SNYK-PYTHON-URLLIB3-6002459 --- requirements.txt | 1 + 1 file changed, 1 insertion(+) diff --git a/requirements.txt b/requirements.txt index 37a1d5c..0035ec5 100644 --- a/requirements.txt +++ b/requirements.txt @@ -3,3 +3,4 @@ requests>=2.18.4,<=2.20.1 Werkzeug==0.15.5 pystache>=0.5.1,<=0.5.4 pycryptodome>=3.7.2, <4.0.0 +urllib3>=1.26.18 # not directly required, pinned by Snyk to avoid a vulnerability