From 22bc716ad25bfbb60b5bb7205a83ce5ffa861e2f Mon Sep 17 00:00:00 2001 From: snyk-bot Date: Tue, 7 Sep 2021 04:35:50 +0000 Subject: [PATCH] fix: requirements.txt to reduce vulnerabilities The following vulnerabilities are fixed by pinning transitive dependencies: - https://snyk.io/vuln/SNYK-PYTHON-JINJA2-1012994 - https://snyk.io/vuln/SNYK-PYTHON-JINJA2-174126 - https://snyk.io/vuln/SNYK-PYTHON-JINJA2-455616 - https://snyk.io/vuln/SNYK-PYTHON-PYGMENTS-1086606 - https://snyk.io/vuln/SNYK-PYTHON-PYGMENTS-1088505 - https://snyk.io/vuln/SNYK-PYTHON-PYYAML-42159 - https://snyk.io/vuln/SNYK-PYTHON-PYYAML-559098 - https://snyk.io/vuln/SNYK-PYTHON-PYYAML-590151 - https://snyk.io/vuln/SNYK-PYTHON-SPHINX-570772 - https://snyk.io/vuln/SNYK-PYTHON-SPHINX-570773 - https://snyk.io/vuln/SNYK-PYTHON-WEBOB-40490 --- requirements.txt | 10 +++++----- 1 file changed, 5 insertions(+), 5 deletions(-) diff --git a/requirements.txt b/requirements.txt index 0171a73a..0d07263d 100644 --- a/requirements.txt +++ b/requirements.txt @@ -1,12 +1,12 @@ CouchDB==1.0 -Jinja2==2.7.3 +Jinja2==2.11.3 LEPL==5.1.3 MarkupSafe==0.23 PasteDeploy==1.5.2 -PyYAML==3.11 -Pygments==2.0.2 -Sphinx==1.3.1 -WebOb==1.4.1 +PyYAML==4.2b1 +Pygments==2.7.4 +Sphinx==3.0.4 +WebOb==1.6.0a0 WebTest==2.0.18 beautifulsoup4==4.3.2 boto==2.31.1