From 9bdd5d1619aa1b260d35127adf270dc5752c7a04 Mon Sep 17 00:00:00 2001 From: snyk-bot Date: Fri, 28 Jul 2023 10:20:23 +0000 Subject: [PATCH] fix: requirements/base.txt to reduce vulnerabilities The following vulnerabilities are fixed by pinning transitive dependencies: - https://snyk.io/vuln/SNYK-PYTHON-REQUESTS-5595532 --- requirements/base.txt | 2 +- 1 file changed, 1 insertion(+), 1 deletion(-) diff --git a/requirements/base.txt b/requirements/base.txt index 7efa862..388c677 100644 --- a/requirements/base.txt +++ b/requirements/base.txt @@ -25,4 +25,4 @@ PyYAML==6.0.1 uritemplate==4.1.1 setuptools>=65.5.1 # not directly required, pinned by Snyk to avoid a vulnerability numpy>=1.22.2 # not directly required, pinned by Snyk to avoid a vulnerability -requests==2.29.0 +requests==2.31.0