From 2950f5d4f80385ff850b14e6d949271ced76d743 Mon Sep 17 00:00:00 2001 From: snyk-bot Date: Sat, 10 Jan 2026 11:48:53 +0000 Subject: [PATCH] fix: requirements.txt to reduce vulnerabilities The following vulnerabilities are fixed by pinning transitive dependencies: - https://snyk.io/vuln/SNYK-PYTHON-AIOHTTP-14871873 - https://snyk.io/vuln/SNYK-PYTHON-AIOHTTP-14871876 - https://snyk.io/vuln/SNYK-PYTHON-AIOHTTP-14871877 - https://snyk.io/vuln/SNYK-PYTHON-AIOHTTP-14871888 - https://snyk.io/vuln/SNYK-PYTHON-AIOHTTP-14871929 - https://snyk.io/vuln/SNYK-PYTHON-AIOHTTP-14871954 - https://snyk.io/vuln/SNYK-PYTHON-AIOHTTP-14871979 - https://snyk.io/vuln/SNYK-PYTHON-AIOHTTP-14872000 - https://snyk.io/vuln/SNYK-PYTHON-URLLIB3-14896210 --- requirements.txt | 3 ++- 1 file changed, 2 insertions(+), 1 deletion(-) diff --git a/requirements.txt b/requirements.txt index 754094d..47ab30f 100644 --- a/requirements.txt +++ b/requirements.txt @@ -1,4 +1,4 @@ -aiohttp==3.8.1 +aiohttp==3.13.3 cytoolz==0.11.2 dateparser==1.0.0 ecdsa==0.16.0 @@ -14,3 +14,4 @@ sympy==1.6 tox==3.25.0 web3>=5.0.0,<6.0.0 importlib-metadata>=1.6.1 +urllib3>=2.6.3 # not directly required, pinned by Snyk to avoid a vulnerability