From 0ae99009ab4e8fd0e7f534696c0841e941867b03 Mon Sep 17 00:00:00 2001 From: snyk-bot Date: Tue, 13 Aug 2024 09:31:23 +0000 Subject: [PATCH] fix: tools/zircolite_server/requirements.txt to reduce vulnerabilities The following vulnerabilities are fixed by pinning transitive dependencies: - https://snyk.io/vuln/SNYK-PYTHON-FLASK-5490129 - https://snyk.io/vuln/SNYK-PYTHON-JINJA2-6150717 - https://snyk.io/vuln/SNYK-PYTHON-JINJA2-6809379 --- tools/zircolite_server/requirements.txt | 4 ++-- 1 file changed, 2 insertions(+), 2 deletions(-) diff --git a/tools/zircolite_server/requirements.txt b/tools/zircolite_server/requirements.txt index d380287..1c40fd4 100644 --- a/tools/zircolite_server/requirements.txt +++ b/tools/zircolite_server/requirements.txt @@ -1,4 +1,4 @@ -flask>=1.1.2 -jinja2>=2.11.3 +flask>=2.2.5 +jinja2>=3.1.4 werkzeug>=3.0.3 # not directly required, pinned by Snyk to avoid a vulnerability zipp>=3.19.1 # not directly required, pinned by Snyk to avoid a vulnerability