From 26b11f36b7b7ef2fb6106e0254fd86b05bc1b9b8 Mon Sep 17 00:00:00 2001 From: snyk-bot Date: Tue, 26 Nov 2024 17:52:26 +0000 Subject: [PATCH] fix: etl/requirements-dev.txt to reduce vulnerabilities The following vulnerabilities are fixed by pinning transitive dependencies: - https://snyk.io/vuln/SNYK-PYTHON-TORNADO-8400708 --- etl/requirements-dev.txt | 2 +- 1 file changed, 1 insertion(+), 1 deletion(-) diff --git a/etl/requirements-dev.txt b/etl/requirements-dev.txt index b39fe9f..f6ac27d 100644 --- a/etl/requirements-dev.txt +++ b/etl/requirements-dev.txt @@ -4,6 +4,6 @@ csvs-to-sqlite==1.3 ipython>=8.10.0 # not directly required, pinned by Snyk to avoid a vulnerability numpy>=1.22.2 # not directly required, pinned by Snyk to avoid a vulnerability setuptools>=65.5.1 # not directly required, pinned by Snyk to avoid a vulnerability -tornado>=6.3.3 # not directly required, pinned by Snyk to avoid a vulnerability +tornado>=6.4.2 # not directly required, pinned by Snyk to avoid a vulnerability pipdeptree==2.2.1 urllib3>=2.2.2 # not directly required, pinned by Snyk to avoid a vulnerability