From 0474b1ccb66d3c8aec61996e4ec8d62644ce6917 Mon Sep 17 00:00:00 2001 From: snyk-bot Date: Wed, 27 Nov 2024 23:34:01 +0000 Subject: [PATCH] fix: requirements/base.txt to reduce vulnerabilities The following vulnerabilities are fixed by pinning transitive dependencies: - https://snyk.io/vuln/SNYK-PYTHON-TORNADO-8400708 --- requirements/base.txt | 3 ++- 1 file changed, 2 insertions(+), 1 deletion(-) diff --git a/requirements/base.txt b/requirements/base.txt index cb2bd9156bc..82acbf7c992 100644 --- a/requirements/base.txt +++ b/requirements/base.txt @@ -117,4 +117,5 @@ graphqlclient==0.2.4 docutils==0.17.1 unidecode==1.2.0 drf-flex-fields==0.9.1 -pandas \ No newline at end of file +pandas +tornado>=6.4.2 # not directly required, pinned by Snyk to avoid a vulnerability \ No newline at end of file