From 2a71a5462f9d9a5a5d03d73cc7c429506afa8521 Mon Sep 17 00:00:00 2001 From: snyk-bot Date: Wed, 2 Feb 2022 01:38:46 +0000 Subject: [PATCH] fix: packages/snyk-fix/test/acceptance/plugins/python/handlers/pip-requirements/update-dependencies/workspaces/app-with-constraints/expected-requirements.txt to reduce vulnerabilities The following vulnerabilities are fixed by pinning transitive dependencies: - https://snyk.io/vuln/SNYK-PYTHON-DJANGO-2389002 - https://snyk.io/vuln/SNYK-PYTHON-DJANGO-2389021 --- .../workspaces/app-with-constraints/expected-requirements.txt | 2 +- 1 file changed, 1 insertion(+), 1 deletion(-) diff --git a/packages/snyk-fix/test/acceptance/plugins/python/handlers/pip-requirements/update-dependencies/workspaces/app-with-constraints/expected-requirements.txt b/packages/snyk-fix/test/acceptance/plugins/python/handlers/pip-requirements/update-dependencies/workspaces/app-with-constraints/expected-requirements.txt index 295dd1dfd5..a483342569 100644 --- a/packages/snyk-fix/test/acceptance/plugins/python/handlers/pip-requirements/update-dependencies/workspaces/app-with-constraints/expected-requirements.txt +++ b/packages/snyk-fix/test/acceptance/plugins/python/handlers/pip-requirements/update-dependencies/workspaces/app-with-constraints/expected-requirements.txt @@ -1,4 +1,4 @@ -c constraints.txt -r lib/requirements.txt -r base.txt -Django==2.0.1 +Django==2.2.27