From 2005e9953a7bedded6ec2eaa2fd784b4c6d42d3c Mon Sep 17 00:00:00 2001 From: Krzysztof Szyper <45788587+ChristophShyper@users.noreply.github.com> Date: Thu, 11 Jul 2024 08:23:26 +0200 Subject: [PATCH] fix: pip/common/requirements.txt to reduce vulnerabilities (#2253) The following vulnerabilities are fixed by pinning transitive dependencies: - https://snyk.io/vuln/SNYK-PYTHON-ZIPP-7430899 Co-authored-by: snyk-bot --- pip/common/requirements.txt | 1 + 1 file changed, 1 insertion(+) diff --git a/pip/common/requirements.txt b/pip/common/requirements.txt index a53351e6..93f6dcbd 100644 --- a/pip/common/requirements.txt +++ b/pip/common/requirements.txt @@ -4,3 +4,4 @@ python-hcl2==4.3.4 requests==2.32.3 slack_sdk==3.31.0 anyio>=4.4.0 # not directly required, pinned by Snyk to avoid a vulnerability +zipp>=3.19.1 # not directly required, pinned by Snyk to avoid a vulnerability