From 5b525b9ba46a0b5faddcdb51172bf1f99438ccee Mon Sep 17 00:00:00 2001 From: snyk-bot Date: Thu, 11 Jan 2024 18:56:38 +0000 Subject: [PATCH] fix: requirements.dev.txt to reduce vulnerabilities The following vulnerabilities are fixed by pinning transitive dependencies: - https://snyk.io/vuln/SNYK-PYTHON-GITPYTHON-6150683 - https://snyk.io/vuln/SNYK-PYTHON-JINJA2-6150717 --- requirements.dev.txt | 4 ++-- 1 file changed, 2 insertions(+), 2 deletions(-) diff --git a/requirements.dev.txt b/requirements.dev.txt index b9f44d7..ccc66b6 100644 --- a/requirements.dev.txt +++ b/requirements.dev.txt @@ -24,7 +24,7 @@ filelock==3.6.0 # via virtualenv gitdb==4.0.9 # via gitpython -gitpython==3.1.27 +gitpython==3.1.41 # via # -r requirements.dev.in # bandit @@ -32,7 +32,7 @@ identify==2.4.12 # via pre-commit isort==5.10.1 # via pylint -jinja2==3.1.1 +jinja2==3.1.3 # via -r requirements.dev.in lazy-object-proxy==1.7.1 # via astroid