From 524fecdc2e2b4b333c0bf8d903263e6c37184385 Mon Sep 17 00:00:00 2001 From: snyk-bot Date: Sun, 27 Oct 2024 16:26:25 +0000 Subject: [PATCH] fix: integration_tests/requirements.txt to reduce vulnerabilities The following vulnerabilities are fixed by pinning transitive dependencies: - https://snyk.io/vuln/SNYK-PYTHON-URLLIB3-7267250 - https://snyk.io/vuln/SNYK-PYTHON-WERKZEUG-8309091 - https://snyk.io/vuln/SNYK-PYTHON-WERKZEUG-8309092 --- integration_tests/requirements.txt | 2 ++ 1 file changed, 2 insertions(+) diff --git a/integration_tests/requirements.txt b/integration_tests/requirements.txt index 89c6ccb..a25574d 100644 --- a/integration_tests/requirements.txt +++ b/integration_tests/requirements.txt @@ -4,3 +4,5 @@ dbt-redshift~=1.0.0 dbt-postgres~=1.0.0 dbt-spark~=1.0.0 dbt-spark[PyHive]~=1.0.0 +urllib3>=2.2.2 # not directly required, pinned by Snyk to avoid a vulnerability +werkzeug>=3.0.6 # not directly required, pinned by Snyk to avoid a vulnerability