Skip to content

Commit

Permalink
fix: requirements.txt to reduce vulnerabilities
Browse files Browse the repository at this point in the history
The following vulnerabilities are fixed by pinning transitive dependencies:
- https://snyk.io/vuln/SNYK-PYTHON-PILLOW-1055461
- https://snyk.io/vuln/SNYK-PYTHON-PILLOW-1055462
  • Loading branch information
snyk-bot committed Jan 6, 2021
1 parent 0af0786 commit 703521d
Showing 1 changed file with 1 addition and 0 deletions.
1 change: 1 addition & 0 deletions requirements.txt
Expand Up @@ -27,3 +27,4 @@ tqdm
virtualenv
weasyprint; python_version>='3.5'
xmltodict
pillow>=8.1.0 # not directly required, pinned by Snyk to avoid a vulnerability

0 comments on commit 703521d

Please sign in to comment.