From f4e7caf40d554250ea391412be43c8b7a69dbd3e Mon Sep 17 00:00:00 2001 From: snyk-bot Date: Thu, 21 Dec 2023 18:47:41 +0000 Subject: [PATCH] fix: requirements.txt to reduce vulnerabilities The following vulnerabilities are fixed by pinning transitive dependencies: - https://snyk.io/vuln/SNYK-PYTHON-FONTTOOLS-6133203 --- requirements.txt | 1 + 1 file changed, 1 insertion(+) diff --git a/requirements.txt b/requirements.txt index 2313f28..5e4d576 100644 --- a/requirements.txt +++ b/requirements.txt @@ -23,3 +23,4 @@ scipy >= 1.5.2 seaborn setuptools billiard >=3.6.4.0 +fonttools>=4.43.0 # not directly required, pinned by Snyk to avoid a vulnerability