Skip to content

Commit

Permalink
fix: pip-requirements.txt to reduce vulnerabilities
Browse files Browse the repository at this point in the history
The following vulnerabilities are fixed by pinning transitive dependencies:
- https://snyk.io/vuln/SNYK-PYTHON-ZIPP-7430899
  • Loading branch information
snyk-bot committed Jul 10, 2024
1 parent 40dbc60 commit 18e3ef7
Showing 1 changed file with 7 additions and 1 deletion.
1 change: 0 additions & 1 deletion pip-requirements.txt

This file was deleted.

7 changes: 7 additions & 0 deletions pip-requirements.txt
Original file line number Diff line number Diff line change
@@ -0,0 +1,7 @@
ckantoolkit>=0.0.7
pika>=1.1.0,<1.3.0
enum34; python_version < '3.0' # Required by pika
redis
requests>=2.11.1
six>=1.12.0
zipp>=3.19.1 # not directly required, pinned by Snyk to avoid a vulnerability

0 comments on commit 18e3ef7

Please sign in to comment.