From d221d9031614c561a5a31024a415edccb93c616a Mon Sep 17 00:00:00 2001 From: snyk-bot Date: Mon, 4 Sep 2023 19:48:38 +0000 Subject: [PATCH] fix: lib/manager/pip_requirements/__fixtures__/requirements4.txt to reduce vulnerabilities The following vulnerabilities are fixed by pinning transitive dependencies: - https://snyk.io/vuln/SNYK-PYTHON-DJANGO-5880505 --- lib/manager/pip_requirements/__fixtures__/requirements4.txt | 1 + 1 file changed, 1 insertion(+) diff --git a/lib/manager/pip_requirements/__fixtures__/requirements4.txt b/lib/manager/pip_requirements/__fixtures__/requirements4.txt index c8da95e7de78f0..c4458efaf32f44 100644 --- a/lib/manager/pip_requirements/__fixtures__/requirements4.txt +++ b/lib/manager/pip_requirements/__fixtures__/requirements4.txt @@ -2,3 +2,4 @@ Django[argon2]==2.0.12 celery [redis]==4.1.1 foo [bar] == 3.2.1 # handles extra white space +django>=3.2.21 # not directly required, pinned by Snyk to avoid a vulnerability