From 6d5a58b2c59d824665818f386f8d253eda333c76 Mon Sep 17 00:00:00 2001 From: snyk-bot Date: Thu, 13 May 2021 19:57:33 +0000 Subject: [PATCH] fix: requirements.txt to reduce vulnerabilities The following vulnerabilities are fixed by pinning transitive dependencies: - https://snyk.io/vuln/SNYK-PYTHON-HTTPLIB2-1065795 - https://snyk.io/vuln/SNYK-PYTHON-HTTPLIB2-569758 - https://snyk.io/vuln/SNYK-PYTHON-HTTPLIB2-570767 - https://snyk.io/vuln/SNYK-PYTHON-LXML-1047473 - https://snyk.io/vuln/SNYK-PYTHON-LXML-1047474 - https://snyk.io/vuln/SNYK-PYTHON-LXML-1088006 - https://snyk.io/vuln/SNYK-PYTHON-LXML-72651 - https://snyk.io/vuln/SNYK-PYTHON-REQUESTS-72435 - https://snyk.io/vuln/SNYK-PYTHON-RSA-1038401 - https://snyk.io/vuln/SNYK-PYTHON-RSA-570831 - https://snyk.io/vuln/SNYK-PYTHON-URLLIB3-1014645 - https://snyk.io/vuln/SNYK-PYTHON-URLLIB3-174323 - https://snyk.io/vuln/SNYK-PYTHON-URLLIB3-174464 - https://snyk.io/vuln/SNYK-PYTHON-URLLIB3-72681 - https://snyk.io/vuln/SNYK-PYTHON-WERKZEUG-458931 --- requirements.txt | 12 ++++++------ 1 file changed, 6 insertions(+), 6 deletions(-) diff --git a/requirements.txt b/requirements.txt index af0d6b5e..6693a35b 100644 --- a/requirements.txt +++ b/requirements.txt @@ -3,7 +3,7 @@ flask==0.12.2 flask-Assets==0.12 Jinja2==2.9.6 MarkupSafe==1.0 -Werkzeug==0.12.2 +Werkzeug==0.15.3 certifi==2017.4.17 chardet==3.0.3 click==6.7 @@ -12,21 +12,21 @@ cssselect==1.0.1 funcsigs==1.0.2 futures==3.1.1 google-api-python-client==1.6.2 -httplib2==0.10.3 +httplib2==0.19.0 idna==2.5 itsdangerous==0.24 -lxml==3.6.0 +lxml==4.6.2 oauth2client==4.1.1 pyasn1==0.2.3 pyasn1-modules==0.0.9 pyquery==1.2.17 pytz==2017.2 -requests==2.17.3 -rsa==3.4.2 +requests==2.20 +rsa==4.7 six==1.10.0 soco==0.12 tzlocal==1.4 uritemplate==3.0.0 -urllib3==1.21.1 +urllib3==1.25.9 webassets==0.12.1 xmltodict==0.11.0