From 9f5ec4b15716b3e077d8ef7bfe2bc2a3a2f77bc2 Mon Sep 17 00:00:00 2001 From: snyk-bot Date: Mon, 1 Apr 2024 23:17:33 +0000 Subject: [PATCH] fix: app/requirements-step-2.txt to reduce vulnerabilities The following vulnerabilities are fixed by pinning transitive dependencies: - https://snyk.io/vuln/SNYK-PYTHON-PILLOW-6514866 --- app/requirements-step-2.txt | 1 + 1 file changed, 1 insertion(+) diff --git a/app/requirements-step-2.txt b/app/requirements-step-2.txt index 625ab94e..f42c067f 100644 --- a/app/requirements-step-2.txt +++ b/app/requirements-step-2.txt @@ -17,3 +17,4 @@ newtulipy matplotlib>=3.0.1 scipy>=1.1.0 numpy>=1.22.2 # not directly required, pinned by Snyk to avoid a vulnerability +pillow>=10.3.0 # not directly required, pinned by Snyk to avoid a vulnerability