From 18be1d140afe5ff19d43ef7afaf12b3670a59dc3 Mon Sep 17 00:00:00 2001 From: snyk-bot Date: Sat, 21 Jun 2025 08:39:24 +0000 Subject: [PATCH] fix: requirements.txt to reduce vulnerabilities The following vulnerabilities are fixed by pinning transitive dependencies: - https://snyk.io/vuln/SNYK-PYTHON-PROTOBUF-10364902 - https://snyk.io/vuln/SNYK-PYTHON-URLLIB3-10390193 - https://snyk.io/vuln/SNYK-PYTHON-URLLIB3-10390194 --- requirements.txt | 4 ++-- 1 file changed, 2 insertions(+), 2 deletions(-) diff --git a/requirements.txt b/requirements.txt index de7ae96..f79e523 100644 --- a/requirements.txt +++ b/requirements.txt @@ -35,7 +35,7 @@ markupsafe==2.1.2 numba==0.56.4 numpy==1.23.5 polyline==2.0.0 -protobuf==4.22.0 +protobuf==4.25.8 pycparser==2.21 pymysql==1.0.2 pytz==2022.7.1 @@ -46,7 +46,7 @@ setuptools==67.5.1 six==1.16.0 sqlalchemy==2.0.5.post1 typing-extensions==4.5.0 -urllib3==1.26.14 +urllib3==2.5.0 visitor==0.1.3 werkzeug==2.2.3 wtforms==3.0.1