From db80a8d3dbee529dc835f514bfc0a2f4642c0bd4 Mon Sep 17 00:00:00 2001 From: snyk-bot Date: Fri, 12 Sep 2025 07:23:17 +0000 Subject: [PATCH] fix: requirements/base.txt to reduce vulnerabilities The following vulnerabilities are fixed by pinning transitive dependencies: - https://snyk.io/vuln/SNYK-PYTHON-XMLTODICT-12427118 --- requirements/base.txt | 2 +- 1 file changed, 1 insertion(+), 1 deletion(-) diff --git a/requirements/base.txt b/requirements/base.txt index 48de1bc6..da781e68 100644 --- a/requirements/base.txt +++ b/requirements/base.txt @@ -25,6 +25,6 @@ s2sphere < 0.3 scikit-learn >= 1.2, < 2 shapely >= 1, < 3 tqdm >= 4, < 5 -xmltodict < 0.14 +xmltodict<0.15.0 fiona>=1.10b2 # not directly required, pinned by Snyk to avoid a vulnerability zipp>=3.19.1 # not directly required, pinned by Snyk to avoid a vulnerability \ No newline at end of file