From 98c152228846804abf7b31d7a006805fbb6dc6de Mon Sep 17 00:00:00 2001 From: snyk-bot Date: Fri, 3 Nov 2023 22:08:50 +0000 Subject: [PATCH] fix: Python/Pipenv/requirements.txt to reduce vulnerabilities The following vulnerabilities are fixed by pinning transitive dependencies: - https://snyk.io/vuln/SNYK-PYTHON-DJANGO-6041515 - https://snyk.io/vuln/SNYK-PYTHON-PILLOW-6043904 --- Python/Pipenv/requirements.txt | 4 ++-- 1 file changed, 2 insertions(+), 2 deletions(-) diff --git a/Python/Pipenv/requirements.txt b/Python/Pipenv/requirements.txt index cf94928d3..1cdbc8a81 100644 --- a/Python/Pipenv/requirements.txt +++ b/Python/Pipenv/requirements.txt @@ -1,4 +1,4 @@ -Django==2.1 +Django==3.2.23 django-crispy-forms==1.7.2 -Pillow==5.2.0 +Pillow==10.0.0 pytz==2018.5