From fb79e33a3411a05cf452e31591fe34eaaf11892a Mon Sep 17 00:00:00 2001 From: snyk-bot Date: Tue, 16 Jul 2024 01:41:38 +0000 Subject: [PATCH] fix: requirements.txt to reduce vulnerabilities The following vulnerabilities are fixed by pinning transitive dependencies: - https://snyk.io/vuln/SNYK-PYTHON-FLASK-5490129 - https://snyk.io/vuln/SNYK-PYTHON-JINJA2-6150717 - https://snyk.io/vuln/SNYK-PYTHON-JINJA2-6809379 - https://snyk.io/vuln/SNYK-PYTHON-WERKZEUG-3319935 - https://snyk.io/vuln/SNYK-PYTHON-WERKZEUG-3319936 - https://snyk.io/vuln/SNYK-PYTHON-WERKZEUG-6035177 - https://snyk.io/vuln/SNYK-PYTHON-WERKZEUG-6808933 --- requirements.txt | 6 +++--- 1 file changed, 3 insertions(+), 3 deletions(-) diff --git a/requirements.txt b/requirements.txt index 1a2c062..339df3e 100644 --- a/requirements.txt +++ b/requirements.txt @@ -13,7 +13,7 @@ click-didyoumean==0.0.3 click-plugins==1.1.1 click-repl==0.1.6 flake8==3.8.4 -Flask==1.1.2 +Flask==2.2.5 Flask-DebugToolbar==0.11.0 Flask-Migrate==2.6.0 Flask-SQLAlchemy==2.4.4 @@ -21,7 +21,7 @@ Flask-WTF==0.14.3 gunicorn==20.0.4 idna==2.10 itsdangerous==1.1.0 -Jinja2==2.11.3 +Jinja2==3.1.4 kombu==5.0.2 Mako==1.1.4 MarkupSafe==1.1.1 @@ -48,5 +48,5 @@ typing-extensions==3.7.4.3 urllib3==1.26.3 vine==5.0.0 wcwidth==0.2.5 -Werkzeug==1.0.1 +Werkzeug==3.0.3 WTForms==2.3.3