From 62cc956967db2720d69c374e31ce8c85b575e429 Mon Sep 17 00:00:00 2001 From: Nikita Manovich Date: Tue, 9 Mar 2021 09:04:51 +0300 Subject: [PATCH] fix: cvat/requirements/base.txt to reduce vulnerabilities (#2918) The following vulnerabilities are fixed by pinning transitive dependencies: - https://snyk.io/vuln/SNYK-PYTHON-PILLOW-1081494 - https://snyk.io/vuln/SNYK-PYTHON-PILLOW-1081501 - https://snyk.io/vuln/SNYK-PYTHON-PILLOW-1081502 Co-authored-by: snyk-bot --- cvat/requirements/base.txt | 2 +- 1 file changed, 1 insertion(+), 1 deletion(-) diff --git a/cvat/requirements/base.txt b/cvat/requirements/base.txt index 45cb5f166303..ed31e5031e51 100644 --- a/cvat/requirements/base.txt +++ b/cvat/requirements/base.txt @@ -6,7 +6,7 @@ django-cacheops==5.0.1 django-compressor==2.4 django-rq==2.3.2 EasyProcess==0.3 -Pillow==8.1.1 +Pillow==8.1.2 numpy==1.19.5 python-ldap==3.3.1 pytz==2020.1