From 74db8700e94dadd9656d0210765be87c6af5bbb9 Mon Sep 17 00:00:00 2001 From: snyk-bot Date: Thu, 18 Apr 2024 15:04:00 +0000 Subject: [PATCH] fix: pub_sub/python/sdk/order-processor-fastapi/requirements.txt to reduce vulnerabilities The following vulnerabilities are fixed by pinning transitive dependencies: - https://snyk.io/vuln/SNYK-PYTHON-AIOHTTP-6645291 --- pub_sub/python/sdk/order-processor-fastapi/requirements.txt | 1 + 1 file changed, 1 insertion(+) diff --git a/pub_sub/python/sdk/order-processor-fastapi/requirements.txt b/pub_sub/python/sdk/order-processor-fastapi/requirements.txt index 21d943187..ca6a375be 100644 --- a/pub_sub/python/sdk/order-processor-fastapi/requirements.txt +++ b/pub_sub/python/sdk/order-processor-fastapi/requirements.txt @@ -2,3 +2,4 @@ fastapi dapr-ext-fastapi-dev cloudevents uvicorn +aiohttp>=3.9.4 # not directly required, pinned by Snyk to avoid a vulnerability