From 38b23a262775e2a9f3e4409d3da862c2c1533d3d Mon Sep 17 00:00:00 2001 From: snyk-bot Date: Wed, 28 Jul 2021 04:39:35 +0000 Subject: [PATCH] fix: requirements.txt to reduce vulnerabilities The following vulnerabilities are fixed by pinning transitive dependencies: - https://snyk.io/vuln/SNYK-PYTHON-URLLIB3-1533435 --- requirements.txt | 1 + 1 file changed, 1 insertion(+) diff --git a/requirements.txt b/requirements.txt index bdf8364..4745128 100644 --- a/requirements.txt +++ b/requirements.txt @@ -12,3 +12,4 @@ futures==3.0 soupsieve==1.9.5 https://github.com/mozilla-services/tokenserver/archive/1.4.5.zip https://github.com/mozilla-services/server-syncstorage/archive/1.6.14.zip +urllib3>=1.26.5 # not directly required, pinned by Snyk to avoid a vulnerability