From ad632795b2a820773145a4d960d8e849dcfb2813 Mon Sep 17 00:00:00 2001 From: snyk-bot Date: Mon, 31 Oct 2022 18:48:50 -0700 Subject: [PATCH] fix: requirements.txt to reduce vulnerabilities The following vulnerabilities are fixed by pinning transitive dependencies: - https://snyk.io/vuln/SNYK-PYTHON-DJANGO-1279042 - https://snyk.io/vuln/SNYK-PYTHON-DJANGO-1290072 - https://snyk.io/vuln/SNYK-PYTHON-DJANGO-1298665 - https://snyk.io/vuln/SNYK-PYTHON-DJANGO-1298666 - https://snyk.io/vuln/SNYK-PYTHON-DJANGO-1315688 - https://snyk.io/vuln/SNYK-PYTHON-DJANGO-2312875 - https://snyk.io/vuln/SNYK-PYTHON-DJANGO-2329158 - https://snyk.io/vuln/SNYK-PYTHON-DJANGO-2329159 - https://snyk.io/vuln/SNYK-PYTHON-DJANGO-2329160 - https://snyk.io/vuln/SNYK-PYTHON-DJANGO-2389002 - https://snyk.io/vuln/SNYK-PYTHON-DJANGO-2389021 - https://snyk.io/vuln/SNYK-PYTHON-DJANGO-2606966 - https://snyk.io/vuln/SNYK-PYTHON-DJANGO-2606969 - https://snyk.io/vuln/SNYK-PYTHON-DJANGO-2940618 - https://snyk.io/vuln/SNYK-PYTHON-DJANGO-2968205 - https://snyk.io/vuln/SNYK-PYTHON-DJANGO-3039675 - https://snyk.io/vuln/SNYK-PYTHON-SQLPARSE-1584201 --- requirements.txt | 4 ++-- 1 file changed, 2 insertions(+), 2 deletions(-) diff --git a/requirements.txt b/requirements.txt index a7fa694..f9ba484 100644 --- a/requirements.txt +++ b/requirements.txt @@ -23,7 +23,7 @@ certifi==2020.12.5 chardet==4.0.0 Click==7.1.2 coverage==5.5 -Django==3.2 +Django==3.2.16 django-bootstrap4==3.0.0 django-phonenumber-field==5.1.0 entrypoints==0.3 @@ -41,7 +41,7 @@ pytz==2021.1 requests==2.25.1 six==1.15.0 soupsieve==2.2.1 -sqlparse==0.4.1 +sqlparse==0.4.2 toml==0.10.2 twilio==6.50.1 urllib3==1.26.4