From a62e158fd7f199f0fcde197818a3305ed9d84c56 Mon Sep 17 00:00:00 2001 From: snyk-bot Date: Tue, 8 Mar 2022 16:47:02 +0000 Subject: [PATCH] fix: deploy/pyenv/requirements.txt to reduce vulnerabilities The following vulnerabilities are fixed by pinning transitive dependencies: - https://snyk.io/vuln/SNYK-PYTHON-JINJA2-1012994 - https://snyk.io/vuln/SNYK-PYTHON-JINJA2-174126 - https://snyk.io/vuln/SNYK-PYTHON-PSUTIL-483082 - https://snyk.io/vuln/SNYK-PYTHON-REQUESTS-72435 - https://snyk.io/vuln/SNYK-PYTHON-URLLIB3-1014645 - https://snyk.io/vuln/SNYK-PYTHON-URLLIB3-1533435 - https://snyk.io/vuln/SNYK-PYTHON-URLLIB3-174323 - https://snyk.io/vuln/SNYK-PYTHON-URLLIB3-174464 - https://snyk.io/vuln/SNYK-PYTHON-WERKZEUG-458931 --- deploy/pyenv/requirements.txt | 10 +++++----- 1 file changed, 5 insertions(+), 5 deletions(-) diff --git a/deploy/pyenv/requirements.txt b/deploy/pyenv/requirements.txt index 70aae29..62a738a 100644 --- a/deploy/pyenv/requirements.txt +++ b/deploy/pyenv/requirements.txt @@ -9,18 +9,18 @@ gunicorn==19.9.0 huey==1.10.2 idna==2.7 itsdangerous==0.24 -Jinja2==2.10 +Jinja2==2.11.3 MarkupSafe==1.0 -psutil==5.4.7 +psutil==5.6.7 PyGithub==1.43.2 PyJWT==1.6.4 pymongo==3.7.1 pytz==2018.5 redis==2.10.6 -requests==2.19.1 +requests==2.20 requests-file==1.4.3 six==1.11.0 tldextract==2.2.0 -urllib3==1.23 -Werkzeug==0.14.1 +urllib3==1.26.5 +Werkzeug==0.15.3 wrapt==1.10.11