From 8805e93e0a449a5ceffa47c02783be248ddd6997 Mon Sep 17 00:00:00 2001 From: snyk-bot Date: Mon, 12 Jul 2021 23:15:29 +0000 Subject: [PATCH] fix: packages/snyk-fix/test/unit/plugins/python/workspaces/pip-app/requirements.txt to reduce vulnerabilities The following vulnerabilities are fixed by pinning transitive dependencies: - https://snyk.io/vuln/SNYK-PYTHON-DJANGO-40439 --- .../unit/plugins/python/workspaces/pip-app/requirements.txt | 2 +- 1 file changed, 1 insertion(+), 1 deletion(-) diff --git a/packages/snyk-fix/test/unit/plugins/python/workspaces/pip-app/requirements.txt b/packages/snyk-fix/test/unit/plugins/python/workspaces/pip-app/requirements.txt index f04136abf3..9d915eb95f 100644 --- a/packages/snyk-fix/test/unit/plugins/python/workspaces/pip-app/requirements.txt +++ b/packages/snyk-fix/test/unit/plugins/python/workspaces/pip-app/requirements.txt @@ -1,5 +1,5 @@ Jinja2==2.7.2 -Django==1.6.1 +Django==1.8.16 python-etcd==0.4.5 Django-Select2==6.0.1 # this version installs with lowercase so it catches a previous bug in pip_resolve.py irc==16.2 # this has a cyclic dependency (internal jaraco.text <==> jaraco.collections)