From c07af3428b8c3cb81a644190fced3d7cfdb7513f Mon Sep 17 00:00:00 2001 From: snyk-bot Date: Fri, 3 Dec 2021 21:40:47 +0000 Subject: [PATCH] fix: requirements.txt to reduce vulnerabilities The following vulnerabilities are fixed by pinning transitive dependencies: - https://snyk.io/vuln/SNYK-PYTHON-CRYPTOGRAPHY-1022152 - https://snyk.io/vuln/SNYK-PYTHON-URLLIB3-1014645 - https://snyk.io/vuln/SNYK-PYTHON-URLLIB3-1533435 - https://snyk.io/vuln/SNYK-PYTHON-URLLIB3-174323 --- requirements.txt | 4 ++-- 1 file changed, 2 insertions(+), 2 deletions(-) diff --git a/requirements.txt b/requirements.txt index 16b3728..72c2c84 100644 --- a/requirements.txt +++ b/requirements.txt @@ -2,7 +2,7 @@ asn1crypto==0.24.0 certifi==2019.6.16 cffi==1.12.3 chardet==3.0.4 -cryptography==2.7 +cryptography==3.2 idna==2.8 oauthlib==3.0.2 pycparser==2.19 @@ -12,4 +12,4 @@ python-dotenv==0.10.3 requests==2.22.0 requests-oauthlib==1.2.0 six==1.12.0 -urllib3==1.24.2 +urllib3==1.26.5