From ee73db39e84e90190cfd55a0d721581540342847 Mon Sep 17 00:00:00 2001 From: snyk-bot Date: Wed, 1 Jan 2025 13:28:40 +0000 Subject: [PATCH] fix: update/requirements.txt to reduce vulnerabilities The following vulnerabilities are fixed by pinning transitive dependencies: - https://snyk.io/vuln/SNYK-PYTHON-BLACK-6256273 - https://snyk.io/vuln/SNYK-PYTHON-CERTIFI-3164749 - https://snyk.io/vuln/SNYK-PYTHON-CERTIFI-5805047 - https://snyk.io/vuln/SNYK-PYTHON-FONTTOOLS-6133203 - https://snyk.io/vuln/SNYK-PYTHON-IDNA-6597975 - https://snyk.io/vuln/SNYK-PYTHON-REQUESTS-5595532 - https://snyk.io/vuln/SNYK-PYTHON-REQUESTS-6928867 - https://snyk.io/vuln/SNYK-PYTHON-URLLIB3-1533435 - https://snyk.io/vuln/SNYK-PYTHON-URLLIB3-5926907 - https://snyk.io/vuln/SNYK-PYTHON-URLLIB3-6002459 - https://snyk.io/vuln/SNYK-PYTHON-URLLIB3-7267250 --- update/requirements.txt | 12 ++++++------ 1 file changed, 6 insertions(+), 6 deletions(-) diff --git a/update/requirements.txt b/update/requirements.txt index 75b6ec68cf08..2fb82023a6b6 100644 --- a/update/requirements.txt +++ b/update/requirements.txt @@ -1,16 +1,16 @@ absl-py==0.9.0 appdirs==1.4.4 attrs==19.3.0 -black==19.10b0 -certifi==2020.6.20 +black==24.3.0 +certifi==2023.7.22 chardet==3.0.4 click==7.1.2 -fonttools==4.14.0 -idna==2.10 +fonttools==4.43.0 +idna==3.7 pathspec==0.8.0 regex==2020.7.14 -requests==2.24.0 +requests==2.32.2 six==1.15.0 toml==0.10.1 typed-ast==1.4.1 -urllib3==1.25.10 +urllib3==1.26.19