From b36e50eb2c689e552856d587de02a72700dc1740 Mon Sep 17 00:00:00 2001 From: snyk-bot Date: Mon, 2 Sep 2024 09:15:30 +0000 Subject: [PATCH] fix: requirements.txt to reduce vulnerabilities The following vulnerabilities are fixed by pinning transitive dependencies: - https://snyk.io/vuln/SNYK-PYTHON-SETUPTOOLS-3180412 - https://snyk.io/vuln/SNYK-PYTHON-SETUPTOOLS-7448482 - https://snyk.io/vuln/SNYK-PYTHON-TWISTED-2395823 - https://snyk.io/vuln/SNYK-PYTHON-TWISTED-2440825 - https://snyk.io/vuln/SNYK-PYTHON-TWISTED-3040866 - https://snyk.io/vuln/SNYK-PYTHON-TWISTED-3084923 - https://snyk.io/vuln/SNYK-PYTHON-TWISTED-449615 - https://snyk.io/vuln/SNYK-PYTHON-TWISTED-449939 - https://snyk.io/vuln/SNYK-PYTHON-TWISTED-564119 - https://snyk.io/vuln/SNYK-PYTHON-TWISTED-564121 - https://snyk.io/vuln/SNYK-PYTHON-TWISTED-564357 - https://snyk.io/vuln/SNYK-PYTHON-TWISTED-6036202 - https://snyk.io/vuln/SNYK-PYTHON-TWISTED-7573294 - https://snyk.io/vuln/SNYK-PYTHON-TWISTED-7573295 --- requirements.txt | 3 ++- 1 file changed, 2 insertions(+), 1 deletion(-) diff --git a/requirements.txt b/requirements.txt index 5e767a8..ba2baa5 100644 --- a/requirements.txt +++ b/requirements.txt @@ -156,7 +156,7 @@ tqdm==4.28.1 traitlets==4.3.3 translationstring==1.3 trollius==2.0.1 -Twisted==18.9.0 +Twisted==24.7.0rc1 txaio==2.10.0 typing==3.6.6 u-msgpack-python==2.1 @@ -180,3 +180,4 @@ zope.deprecation==4.4.0 zope.event==4.2.0 zope.hookable==4.0.4 zope.interface==4.6.0 +setuptools>=70.0.0 # not directly required, pinned by Snyk to avoid a vulnerability