From 4ee5bc652f71a559436c3553b97ba342fd3b1ba2 Mon Sep 17 00:00:00 2001 From: snyk-bot Date: Fri, 20 Jun 2025 09:02:54 +0000 Subject: [PATCH] fix: requirements.txt to reduce vulnerabilities The following vulnerabilities are fixed by pinning transitive dependencies: - https://snyk.io/vuln/SNYK-PYTHON-URLLIB3-10390193 - https://snyk.io/vuln/SNYK-PYTHON-URLLIB3-10390194 --- requirements.txt | 1 + 1 file changed, 1 insertion(+) diff --git a/requirements.txt b/requirements.txt index 90736be8..225a2c8a 100644 --- a/requirements.txt +++ b/requirements.txt @@ -39,3 +39,4 @@ tweak >= 1.0.3, < 2 # Version range restricted due to an incompatibility with later versions of gitdb2. # See https://github.com/gitpython-developers/GitPython/issues/983 gitdb2==3.0.1 +urllib3>=2.5.0 # not directly required, pinned by Snyk to avoid a vulnerability