From 943bce7e5c5ec9518e50ac9a740aa3854324aead Mon Sep 17 00:00:00 2001 From: snyk-bot Date: Wed, 30 Oct 2024 14:31:35 +0000 Subject: [PATCH] fix: requirements-dev.txt to reduce vulnerabilities The following vulnerabilities are fixed by pinning transitive dependencies: - https://dev.snyk.io/vuln/SNYK-PYTHON-WERKZEUG-8309091 - https://dev.snyk.io/vuln/SNYK-PYTHON-WERKZEUG-8309092 --- requirements-dev.txt | 1 + 1 file changed, 1 insertion(+) diff --git a/requirements-dev.txt b/requirements-dev.txt index f137c46a33..5a1ee0455a 100644 --- a/requirements-dev.txt +++ b/requirements-dev.txt @@ -6,3 +6,4 @@ httpbin==0.10.0 trustme wheel cryptography<40.0.0; python_version <= '3.7' and platform_python_implementation == 'PyPy' +werkzeug>=3.0.6 # not directly required, pinned by Snyk to avoid a vulnerability