From 8864b28f8c3e29296d5db109bfdaa47c3fb72c8f Mon Sep 17 00:00:00 2001 From: snyk-bot Date: Mon, 8 Dec 2025 09:46:51 +0000 Subject: [PATCH] fix: requirements.txt to reduce vulnerabilities The following vulnerabilities are fixed by pinning transitive dependencies: - https://snyk.io/vuln/SNYK-PYTHON-DJANGO-14157807 - https://snyk.io/vuln/SNYK-PYTHON-DJANGO-14157810 - https://snyk.io/vuln/SNYK-PYTHON-SQLPARSE-14157217 - https://snyk.io/vuln/SNYK-PYTHON-URLLIB3-14192442 - https://snyk.io/vuln/SNYK-PYTHON-URLLIB3-14192443 --- requirements.txt | 6 +++--- 1 file changed, 3 insertions(+), 3 deletions(-) diff --git a/requirements.txt b/requirements.txt index 5e767a8..837e70e 100644 --- a/requirements.txt +++ b/requirements.txt @@ -26,7 +26,7 @@ Cython==0.29.14 dbus-python==1.2.12 decorator==4.3.0 deprecation==2.0.6 -Django==1.11.23 +Django==4.2.27 dnspython==1.16.0 EditorConfig==0.12.1 Elixir==0.7.1 @@ -147,7 +147,7 @@ soupsieve==1.9.4 speaklater==1.3 SQLAlchemy==1.3.10 sqlalchemy-schemadisplay==1.3 -sqlparse==0.2.4 +sqlparse==0.5.4 syslog-rfc5424-formatter==1.2.2 Tempita==0.5.2 termcolor==1.1.0 @@ -161,7 +161,7 @@ txaio==2.10.0 typing==3.6.6 u-msgpack-python==2.1 Unidecode==1.1.1 -urllib3==1.24.1 +urllib3==2.6.0 uTidylib==0.5 venusian==1.2.0 waitress==1.2.0b2