From 067bdf0c5d7f5ed0da4176c5065f3e6e2ef24691 Mon Sep 17 00:00:00 2001 From: snyk-bot Date: Fri, 1 Mar 2024 06:44:25 +0000 Subject: [PATCH] fix: requirements/development.txt to reduce vulnerabilities The following vulnerabilities are fixed by pinning transitive dependencies: - https://snyk.io/vuln/SNYK-PYTHON-CERTIFI-3164749 - https://snyk.io/vuln/SNYK-PYTHON-CERTIFI-5805047 - https://snyk.io/vuln/SNYK-PYTHON-REQUESTS-5595532 --- requirements/development.txt | 2 ++ 1 file changed, 2 insertions(+) diff --git a/requirements/development.txt b/requirements/development.txt index 5710ccf..24c2efa 100644 --- a/requirements/development.txt +++ b/requirements/development.txt @@ -3,3 +3,5 @@ pytest==7.3.2 pytest-cov==4.1.0 coverage==7.2.7 codecov==2.1.13 +certifi>=2023.7.22 # not directly required, pinned by Snyk to avoid a vulnerability +requests>=2.31.0 # not directly required, pinned by Snyk to avoid a vulnerability