From 38fc2892eb9b5a9e94c270f730eda3e802064184 Mon Sep 17 00:00:00 2001 From: snyk-bot Date: Mon, 1 Apr 2024 17:31:41 +0000 Subject: [PATCH] fix: requirements.txt to reduce vulnerabilities The following vulnerabilities are fixed by pinning transitive dependencies: - https://snyk.io/vuln/SNYK-PYTHON-PILLOW-6514866 --- requirements.txt | 2 +- 1 file changed, 1 insertion(+), 1 deletion(-) diff --git a/requirements.txt b/requirements.txt index cba76b0..7830408 100644 --- a/requirements.txt +++ b/requirements.txt @@ -1,6 +1,6 @@ boto3==1.26.149 c2cwsgiutils[broadcast]>=4.0,<5 -Pillow==9.5.0 +Pillow==10.3.0 wand==0.6.11 WebTest==3.0.0 python-json-logger==2.0.7