From 8429aadc54115e65b3231bf62d91efe62424bc9c Mon Sep 17 00:00:00 2001 From: snyk-bot Date: Thu, 2 Jul 2020 01:08:47 +0000 Subject: [PATCH] fix: requirements.txt to reduce vulnerabilities The following vulnerabilities are fixed by pinning transitive dependencies: - https://snyk.io/vuln/SNYK-PYTHON-PILLOW-574573 - https://snyk.io/vuln/SNYK-PYTHON-PILLOW-574574 - https://snyk.io/vuln/SNYK-PYTHON-PILLOW-574575 - https://snyk.io/vuln/SNYK-PYTHON-PILLOW-574576 - https://snyk.io/vuln/SNYK-PYTHON-PILLOW-574577 --- requirements.txt | 2 ++ 1 file changed, 2 insertions(+) diff --git a/requirements.txt b/requirements.txt index 7ce4516..a22c1b3 100644 --- a/requirements.txt +++ b/requirements.txt @@ -32,3 +32,5 @@ bokeh Flask==0.10.1 PyTrie==0.2 requests + +pillow>=6.2.3 # not directly required, pinned by Snyk to avoid a vulnerability \ No newline at end of file