From f40ffd53a7685f83f171d7edf75a0b1c43de5f09 Mon Sep 17 00:00:00 2001 From: snyk-bot Date: Mon, 5 Feb 2024 15:13:59 +0000 Subject: [PATCH] fix: requirements.txt to reduce vulnerabilities The following vulnerabilities are fixed by pinning transitive dependencies: - https://snyk.io/vuln/SNYK-PYTHON-CRYPTOGRAPHY-6210214 - https://snyk.io/vuln/SNYK-PYTHON-PYCRYPTODOME-6219994 --- requirements.txt | 4 ++-- 1 file changed, 2 insertions(+), 2 deletions(-) diff --git a/requirements.txt b/requirements.txt index 1678448..a66f492 100644 --- a/requirements.txt +++ b/requirements.txt @@ -3,14 +3,14 @@ certifi==2020.4.5.1 cffi==1.14.0 chardet==3.0.4 click==7.1.1 -cryptography==3.3.2 +cryptography==42.0.2 idna==2.9 importlib-metadata==1.6.0 jeepney==0.4.3 keyring==21.2.0 keyrings.alt==4.0.2 pycparser==2.20 -pycryptodome==3.9.7 +pycryptodome==3.19.1 PyNaCl==1.3.0 requests==2.23.0 SecretStorage==3.1.2