From 91619ac159cd19e2c5afacb55a59a8be1a0e8170 Mon Sep 17 00:00:00 2001 From: snyk-bot Date: Wed, 20 Dec 2023 14:55:05 +0000 Subject: [PATCH] fix: client/requirements.txt to reduce vulnerabilities The following vulnerabilities are fixed by pinning transitive dependencies: - https://snyk.io/vuln/SNYK-PYTHON-CERTIFI-3164749 - https://snyk.io/vuln/SNYK-PYTHON-CERTIFI-5805047 - https://snyk.io/vuln/SNYK-PYTHON-REQUESTS-5595532 --- client/requirements.txt | 3 ++- 1 file changed, 2 insertions(+), 1 deletion(-) diff --git a/client/requirements.txt b/client/requirements.txt index 04f82ed..0ce58b6 100644 --- a/client/requirements.txt +++ b/client/requirements.txt @@ -1,5 +1,6 @@ APScheduler==3.5.3 -requests>=2.20.0 +requests>=2.31.0 https://github.com/squeaky-pl/japronto/archive/master.zip urllib3>=1.25.9 # not directly required, pinned by Snyk to avoid a vulnerability +certifi>=2023.7.22 # not directly required, pinned by Snyk to avoid a vulnerability