From 17dbb64365765a860ff073ac2dfc57bcd8a06d96 Mon Sep 17 00:00:00 2001 From: snyk-bot Date: Fri, 23 Dec 2022 18:56:02 +0000 Subject: [PATCH] fix: requirements.txt to reduce vulnerabilities The following vulnerabilities are fixed by pinning transitive dependencies: - https://snyk.io/vuln/SNYK-PYTHON-SETUPTOOLS-3180412 --- requirements.txt | 1 + 1 file changed, 1 insertion(+) diff --git a/requirements.txt b/requirements.txt index 98c9c0dd..89cffe7d 100644 --- a/requirements.txt +++ b/requirements.txt @@ -101,3 +101,4 @@ memento_client>=0.5.1,!=0.6.0 # pywikibot prefers using the inbuilt bz2 module if python was compiled with # bz2 support. But if it wasn't, bz2file is used instead. # bz2file +setuptools>=65.5.1 # not directly required, pinned by Snyk to avoid a vulnerability