From 4c0e288f8405b2ac6fa2812c01d5a950c445fd19 Mon Sep 17 00:00:00 2001 From: snyk-bot Date: Mon, 28 Oct 2024 05:59:42 +0000 Subject: [PATCH] fix: requirements/prod.txt to reduce vulnerabilities The following vulnerabilities are fixed by pinning transitive dependencies: - https://snyk.io/vuln/SNYK-PYTHON-WERKZEUG-8309091 - https://snyk.io/vuln/SNYK-PYTHON-WERKZEUG-8309092 --- requirements/prod.txt | 1 + 1 file changed, 1 insertion(+) mode change 100755 => 100644 requirements/prod.txt diff --git a/requirements/prod.txt b/requirements/prod.txt old mode 100755 new mode 100644 index 5567a3301..855d2ec1c --- a/requirements/prod.txt +++ b/requirements/prod.txt @@ -8,3 +8,4 @@ Flask-WTF==0.15.1 email_validator==1.1.3 python-dotenv==0.19.1 prometheus-flask-exporter==0.18.5 +werkzeug>=3.0.6 # not directly required, pinned by Snyk to avoid a vulnerability