From 1f31a7716e4887ed49076d2684b65e5300506ebb Mon Sep 17 00:00:00 2001 From: snyk-bot Date: Thu, 1 Feb 2024 23:16:00 +0000 Subject: [PATCH] fix: ci/requirements-2.7_64.txt to reduce vulnerabilities The following vulnerabilities are fixed by pinning transitive dependencies: - https://snyk.io/vuln/SNYK-PYTHON-PILLOW-6219984 - https://snyk.io/vuln/SNYK-PYTHON-PILLOW-6219986 --- ci/requirements-2.7_64.txt | 1 + 1 file changed, 1 insertion(+) diff --git a/ci/requirements-2.7_64.txt b/ci/requirements-2.7_64.txt index 2e241b1ce45bf..1a830f67571ee 100644 --- a/ci/requirements-2.7_64.txt +++ b/ci/requirements-2.7_64.txt @@ -9,3 +9,4 @@ matplotlib openpyxl xlrd scipy +pillow>=10.2.0 # not directly required, pinned by Snyk to avoid a vulnerability