From df8393b162f3e4ba2d86caeae3030a9e61c0f67f Mon Sep 17 00:00:00 2001 From: snyk-bot Date: Tue, 13 Feb 2024 04:12:10 +0000 Subject: [PATCH] fix: requirements.txt to reduce vulnerabilities The following vulnerabilities are fixed by pinning transitive dependencies: - https://snyk.io/vuln/SNYK-PYTHON-PILLOW-1727377 - https://snyk.io/vuln/SNYK-PYTHON-SETUPTOOLS-3180412 - https://snyk.io/vuln/SNYK-PYTHON-SPHINX-5811865 - https://snyk.io/vuln/SNYK-PYTHON-SPHINX-5812109 --- requirements.txt | 5 +++-- 1 file changed, 3 insertions(+), 2 deletions(-) diff --git a/requirements.txt b/requirements.txt index f47cd19..1c7cae5 100644 --- a/requirements.txt +++ b/requirements.txt @@ -5,10 +5,11 @@ dlib==19.4.0 flask==1.0 Flask-Cors==3.0.9 imutils==0.4.3 -pillow==8.1.1 +pillow==8.3.2 pytesseract==0.1.7 fuzzywuzzy==0.15.1 python-levenshtein==0.12.1 colorlog==3.0.1 -Sphinx==3.0.4 +Sphinx==3.3.0 sphinx-rtd-theme==0.2.4 +setuptools>=65.5.1 # not directly required, pinned by Snyk to avoid a vulnerability