Skip to content

Commit fc3d4e7

Browse files
committed
fix: requirements-cli.txt to reduce vulnerabilities
The following vulnerabilities are fixed by pinning transitive dependencies: - https://snyk.io/vuln/SNYK-PYTHON-SETUPTOOLS-7448482
1 parent 572d4af commit fc3d4e7

File tree

1 file changed

+1
-1
lines changed

1 file changed

+1
-1
lines changed

requirements-cli.txt

+1-1
Original file line numberDiff line numberDiff line change
@@ -46,7 +46,7 @@ pip-audit # https://github.com/pypa/pip-audit
4646
#pre-commit # https://pre-commit.com/
4747
#pydot # use tegether with cfn-lint to generate DOT file, require graphviz
4848
#yq # YAML/XML processor - jq wrapper for YAML/XML documents, https://github.com/kislyuk/yq
49-
setuptools>=65.5.1 # not directly required, pinned by Snyk to avoid a vulnerability
49+
setuptools>=70.0.0 # not directly required, pinned by Snyk to avoid a vulnerability
5050
sympy>=1.12 # not directly required, pinned by Snyk to avoid a vulnerability
5151
requests>=2.32.0 # not directly required, pinned by Snyk to avoid a vulnerability
5252
urllib3>=2.2.2 # not directly required, pinned by Snyk to avoid a vulnerability

0 commit comments

Comments
 (0)