From 6f8a270542b3a33bdccc4e9bb4c94dc3572c9561 Mon Sep 17 00:00:00 2001 From: snyk-bot Date: Mon, 9 Dec 2024 05:52:06 +0000 Subject: [PATCH] fix: app/requirements.txt to reduce vulnerabilities The following vulnerabilities are fixed by pinning transitive dependencies: - https://snyk.io/vuln/SNYK-PYTHON-DJANGO-8456315 - https://snyk.io/vuln/SNYK-PYTHON-DJANGO-8456316 - https://snyk.io/vuln/SNYK-PYTHON-MINIO-8445269 --- app/requirements.txt | 4 ++-- 1 file changed, 2 insertions(+), 2 deletions(-) diff --git a/app/requirements.txt b/app/requirements.txt index 773b1bd..239abb3 100644 --- a/app/requirements.txt +++ b/app/requirements.txt @@ -1,7 +1,7 @@ asgiref==3.4.1 celery==5.1.2 confusable-homoglyphs==3.2.0 -Django==3.2.6 +Django==4.2.17 django-braces==1.15.0 django-celery-results==2.2.0 psycopg2-binary==2.9.1 @@ -10,7 +10,7 @@ pymongo==3.12.1 python-dateutil==2.8.2 sqlparse==0.4.1 lxml==4.6.3 -minio==7.1.0 +minio==7.2.11 gunicorn==20.1.0 -e git+https://github.com/scieloorg/opac_schema.git@v2.62#egg=opac_schema -e git+https://github.com/scieloorg/dsm.git@v0.1.1#egg=dsm