From 06766dd1b21625b1fc12b0ffe179d998b03fd232 Mon Sep 17 00:00:00 2001 From: "dependabot[bot]" <49699333+dependabot[bot]@users.noreply.github.com> Date: Tue, 22 Oct 2019 21:58:05 +0000 Subject: [PATCH] Bump pillow from 5.4.1 to 6.2.0 Bumps [pillow](https://github.com/python-pillow/Pillow) from 5.4.1 to 6.2.0. - [Release notes](https://github.com/python-pillow/Pillow/releases) - [Changelog](https://github.com/python-pillow/Pillow/blob/master/CHANGES.rst) - [Commits](https://github.com/python-pillow/Pillow/compare/5.4.1...6.2.0) Signed-off-by: dependabot[bot] --- requirements.txt | 2 +- 1 file changed, 1 insertion(+), 1 deletion(-) diff --git a/requirements.txt b/requirements.txt index c2352bbc8..6e42427ab 100644 --- a/requirements.txt +++ b/requirements.txt @@ -118,7 +118,7 @@ paramiko==2.0.9 # rq.filter: >=2.0, <2.1 # Pillow # Note: replaces obsolete PIL # https://www.djangoproject.com/weblog/2015/jan/02/pillow-security-release/ -pillow==5.4.1 +pillow==6.2.0 # Plone # CVE-2017-5524