From ad4ff630b78148afa658123045c70a45b6ef719f Mon Sep 17 00:00:00 2001 From: snyk-bot Date: Mon, 1 Apr 2024 17:36:30 +0000 Subject: [PATCH] fix: Infrastructure/requirements.txt to reduce vulnerabilities The following vulnerabilities are fixed by pinning transitive dependencies: - https://snyk.io/vuln/SNYK-PYTHON-PILLOW-6514866 --- Infrastructure/requirements.txt | 2 +- 1 file changed, 1 insertion(+), 1 deletion(-) diff --git a/Infrastructure/requirements.txt b/Infrastructure/requirements.txt index c4e99e05..005956dc 100644 --- a/Infrastructure/requirements.txt +++ b/Infrastructure/requirements.txt @@ -28,4 +28,4 @@ fakeredis mock redis -pillow>=10.2.0 # not directly required, pinned by Snyk to avoid a vulnerability +pillow>=10.3.0 # not directly required, pinned by Snyk to avoid a vulnerability