From 56ea3442f319b8ea9fe629e5c047b6d097a002c6 Mon Sep 17 00:00:00 2001 From: snyk-bot Date: Mon, 12 May 2025 06:50:11 +0000 Subject: [PATCH] fix: requirements.txt to reduce vulnerabilities The following vulnerabilities are fixed by pinning transitive dependencies: - https://snyk.io/vuln/SNYK-PYTHON-DJANGO-10074036 - https://snyk.io/vuln/SNYK-PYTHON-FLASK-5490129 - https://snyk.io/vuln/SNYK-PYTHON-JINJA2-1012994 - https://snyk.io/vuln/SNYK-PYTHON-JINJA2-6150717 - https://snyk.io/vuln/SNYK-PYTHON-JINJA2-6809379 - https://snyk.io/vuln/SNYK-PYTHON-JINJA2-8548181 - https://snyk.io/vuln/SNYK-PYTHON-JINJA2-8548987 - https://snyk.io/vuln/SNYK-PYTHON-JINJA2-9292516 - https://snyk.io/vuln/SNYK-PYTHON-WERKZEUG-3319935 - https://snyk.io/vuln/SNYK-PYTHON-WERKZEUG-3319936 - https://snyk.io/vuln/SNYK-PYTHON-WERKZEUG-6035177 - https://snyk.io/vuln/SNYK-PYTHON-WERKZEUG-6808933 - https://snyk.io/vuln/SNYK-PYTHON-WERKZEUG-8309091 - https://snyk.io/vuln/SNYK-PYTHON-WERKZEUG-8309092 --- requirements.txt | 8 ++++---- 1 file changed, 4 insertions(+), 4 deletions(-) diff --git a/requirements.txt b/requirements.txt index 5e767a8..63da232 100644 --- a/requirements.txt +++ b/requirements.txt @@ -26,7 +26,7 @@ Cython==0.29.14 dbus-python==1.2.12 decorator==4.3.0 deprecation==2.0.6 -Django==1.11.23 +Django==4.2.21 dnspython==1.16.0 EditorConfig==0.12.1 Elixir==0.7.1 @@ -36,7 +36,7 @@ faradaysec==3.9.3 feedparser==5.2.1 filedepot==0.5.2 filteralchemy==0.1.0 -Flask==1.1.1 +Flask==2.2.5 Flask-BabelEx==0.9.3 Flask-Classful==0.14.1 Flask-KVSession==0.6.2 @@ -63,7 +63,7 @@ IPy==0.83 ipython==5.8.0 ipython-genutils==0.2.0 itsdangerous==0.24 -Jinja2==2.10.1 +Jinja2==3.1.6 jsbeautifier==1.6.4 keyring==18.0.1 keyrings.alt==3.2.0 @@ -171,7 +171,7 @@ webencodings==0.5.1 WebOb==1.8.5 websocket-client==0.53.0 WebTest==2.0.32 -Werkzeug==0.16.0 +Werkzeug==3.0.6 wifite==2.2.5 wsaccel==0.6.2 WTForms==2.2.1