From e512b9a46c0cee8ff41c22bd9053fb4b24085b7f Mon Sep 17 00:00:00 2001 From: snyk-bot Date: Wed, 24 May 2023 03:31:44 +0000 Subject: [PATCH 1/2] fix: requirements.txt to reduce vulnerabilities The following vulnerabilities are fixed by pinning transitive dependencies: - https://snyk.io/vuln/SNYK-PYTHON-REQUESTS-5595532 --- requirements.txt | 2 +- 1 file changed, 1 insertion(+), 1 deletion(-) diff --git a/requirements.txt b/requirements.txt index ee059c6..b6c6293 100644 --- a/requirements.txt +++ b/requirements.txt @@ -16,7 +16,7 @@ PyGithub==1.43.8 PyJWT==2.4.0 python-terraform==0.10.1 pytz==2019.2 -requests==2.22.0 +requests==2.31.0 rsa==4.7 six==1.12.0 urllib3==1.26.5 From 7482706f14b67aca0c8a83c813636efcebc9f014 Mon Sep 17 00:00:00 2001 From: snyk-bot Date: Wed, 26 Jul 2023 03:25:46 +0000 Subject: [PATCH 2/2] fix: requirements.txt to reduce vulnerabilities The following vulnerabilities are fixed by pinning transitive dependencies: - https://snyk.io/vuln/SNYK-PYTHON-CERTIFI-5805047 --- requirements.txt | 2 +- 1 file changed, 1 insertion(+), 1 deletion(-) diff --git a/requirements.txt b/requirements.txt index b6c6293..462aa05 100644 --- a/requirements.txt +++ b/requirements.txt @@ -1,5 +1,5 @@ cachetools==3.1.1 -certifi==2022.12.7 +certifi==2023.7.22 chardet==3.0.4 Deprecated==1.2.6 google-api-core==1.14.2