From 09262afc4c907d7b383b88844eae91fb0e4575a0 Mon Sep 17 00:00:00 2001 From: snyk-bot Date: Mon, 24 Jan 2022 16:20:25 +0000 Subject: [PATCH] fix: requirements.txt to reduce vulnerabilities The following vulnerabilities are fixed by pinning transitive dependencies: - https://snyk.io/vuln/SNYK-PYTHON-DJANGO-1066259 - https://snyk.io/vuln/SNYK-PYTHON-DJANGO-1279042 - https://snyk.io/vuln/SNYK-PYTHON-DJANGO-1290072 - https://snyk.io/vuln/SNYK-PYTHON-DJANGO-1298665 - https://snyk.io/vuln/SNYK-PYTHON-DJANGO-2312875 --- requirements.txt | 1 + 1 file changed, 1 insertion(+) diff --git a/requirements.txt b/requirements.txt index 5f32d953..1b772bb7 100644 --- a/requirements.txt +++ b/requirements.txt @@ -27,3 +27,4 @@ gunicorn==20.0.4 # Tests django-nose==1.4.6 factory_boy==2.12.0 +django>=2.2.25 # not directly required, pinned by Snyk to avoid a vulnerability