From f6a18cc492ed9c9a9018b7eb6a7acbd0e8747db5 Mon Sep 17 00:00:00 2001 From: snyk-bot Date: Wed, 4 Oct 2023 15:52:23 +0000 Subject: [PATCH] fix: requirements.txt to reduce vulnerabilities The following vulnerabilities are fixed by pinning transitive dependencies: - https://snyk.io/vuln/SNYK-PYTHON-CERTIFI-3164749 - https://snyk.io/vuln/SNYK-PYTHON-CERTIFI-5805047 --- requirements.txt | 3 ++- 1 file changed, 2 insertions(+), 1 deletion(-) diff --git a/requirements.txt b/requirements.txt index 7c0714a..4891029 100644 --- a/requirements.txt +++ b/requirements.txt @@ -6,4 +6,5 @@ httptools==0.1.1 python-json-logger==0.1.11 requests==2.24.0 uvicorn==0.12.1 -uvloop==0.14.0 \ No newline at end of file +uvloop==0.14.0 +certifi>=2023.7.22 # not directly required, pinned by Snyk to avoid a vulnerability \ No newline at end of file