From c34c148d90042678b6d19dc11e8e4eef9ed0b7ea Mon Sep 17 00:00:00 2001 From: snyk-bot Date: Sat, 25 Nov 2023 22:40:38 +0000 Subject: [PATCH] fix: tools/ci_build/github/linux/docker/scripts/manylinux/requirements.txt to reduce vulnerabilities The following vulnerabilities are fixed by pinning transitive dependencies: - https://snyk.io/vuln/SNYK-PYTHON-SYMPY-6084333 --- .../github/linux/docker/scripts/manylinux/requirements.txt | 2 +- 1 file changed, 1 insertion(+), 1 deletion(-) diff --git a/tools/ci_build/github/linux/docker/scripts/manylinux/requirements.txt b/tools/ci_build/github/linux/docker/scripts/manylinux/requirements.txt index 9587e535542b5..2e44c6339f393 100644 --- a/tools/ci_build/github/linux/docker/scripts/manylinux/requirements.txt +++ b/tools/ci_build/github/linux/docker/scripts/manylinux/requirements.txt @@ -5,6 +5,6 @@ setuptools>=41.4.0 wheel git+http://github.com/onnx/onnx.git@237926eab41de21fb9addc4b03b751fd6a3343ec#egg=onnx protobuf -sympy==1.1.1 +sympy==1.12 flake8 flatbuffers