From 3d9d6005c7f218e9b1ba1ba7450b4ca9517dcbc1 Mon Sep 17 00:00:00 2001 From: snyk-bot Date: Sat, 20 Jul 2024 04:35:56 +0000 Subject: [PATCH] fix: kubernetes/requirements.txt to reduce vulnerabilities The following vulnerabilities are fixed by pinning transitive dependencies: - https://snyk.io/vuln/SNYK-PYTHON-CHECKOV-6226344 - https://snyk.io/vuln/SNYK-PYTHON-REQUESTS-6928867 - https://snyk.io/vuln/SNYK-PYTHON-URLLIB3-7267250 - https://snyk.io/vuln/SNYK-PYTHON-ZIPP-7430899 --- kubernetes/requirements.txt | 5 ++++- 1 file changed, 4 insertions(+), 1 deletion(-) diff --git a/kubernetes/requirements.txt b/kubernetes/requirements.txt index 6efce7e9d2..6fdf6f70cb 100644 --- a/kubernetes/requirements.txt +++ b/kubernetes/requirements.txt @@ -1 +1,4 @@ -checkov==1.0.717 +checkov==2.0.1029 +requests>=2.32.2 # not directly required, pinned by Snyk to avoid a vulnerability +urllib3>=2.2.2 # not directly required, pinned by Snyk to avoid a vulnerability +zipp>=3.19.1 # not directly required, pinned by Snyk to avoid a vulnerability