From 4b36465f0c36376b5c8448c5241a593a3f194753 Mon Sep 17 00:00:00 2001 From: snyk-bot Date: Thu, 17 Nov 2022 02:32:19 +0000 Subject: [PATCH] fix: requirements.txt to reduce vulnerabilities The following vulnerabilities are fixed by pinning transitive dependencies: - https://snyk.io/vuln/SNYK-PYTHON-FLASK-42185 - https://snyk.io/vuln/SNYK-PYTHON-FLASK-451637 - https://snyk.io/vuln/SNYK-PYTHON-SETUPTOOLS-3113904 --- requirements.txt | 3 ++- 1 file changed, 2 insertions(+), 1 deletion(-) diff --git a/requirements.txt b/requirements.txt index 2d884b9..8177197 100644 --- a/requirements.txt +++ b/requirements.txt @@ -1,4 +1,4 @@ -Flask==0.12 +Flask==0.12.3 Flask-API==0.7.1 Flask-HTTPAuth==3.2.3 nose==1.3.7 @@ -6,3 +6,4 @@ pinocchio==0.4.2 rednose==1.2.1 coverage==4.4.1 pylint +setuptools>=65.5.1 # not directly required, pinned by Snyk to avoid a vulnerability