From ed621486ec5328247508b1e2528f6845e5a90313 Mon Sep 17 00:00:00 2001 From: snyk-bot Date: Mon, 26 Apr 2021 11:26:56 +0000 Subject: [PATCH] fix: requirements.txt to reduce vulnerabilities The following vulnerabilities are fixed by pinning transitive dependencies: - https://snyk.io/vuln/SNYK-PYTHON-URLLIB3-1085966 --- requirements.txt | 26 ++++++++++++-------------- 1 file changed, 12 insertions(+), 14 deletions(-) diff --git a/requirements.txt b/requirements.txt index 7ae97bd..6b534dd 100644 --- a/requirements.txt +++ b/requirements.txt @@ -1,13 +1,12 @@ asn1crypto==0.24.0 -certifi==2020.12.5 -cffi==1.14.5 -chardet==4.0.0 -click==7.1.2 -cryptography==3.4.6 -Flask==1.1.2 -idna==2.10 +certifi==2019.6.16 +chardet==3.0.4 +Click==7.0 +cryptography==2.1.4 +Flask==1.1.1 +idna==2.8 itsdangerous==1.1.0 -Jinja2==2.11.3 +Jinja2==2.10.1 kazoo==2.6.1 keyring==10.6.0 keyrings.alt==3.0 @@ -16,16 +15,15 @@ MarkupSafe==1.1.1 netifaces==0.10.4 pipdeptree==0.13.2 psutil==5.6.7 -pycparser==2.20 pycrypto==2.6.1 pygobject==3.26.1 python-apt==1.6.5+ubuntu0.5 python-magic==0.4.16 -pyxdg==0.27 -PyYAML==5.4.1 -requests==2.25.1 +pyxdg==0.25 +PyYAML==3.12 +requests==2.22.0 SecretStorage==2.3.1 six==1.12.0 snmp-passpersist==2.0.0 -urllib3==1.26.3 -Werkzeug==1.0.1 +urllib3==1.25.3 +Werkzeug==0.15.5