From c71c03c472d0e1b71d98d4674885765fb58665fb Mon Sep 17 00:00:00 2001 From: snyk-bot Date: Thu, 20 Oct 2022 17:01:23 +0000 Subject: [PATCH] fix: requirements.txt to reduce vulnerabilities The following vulnerabilities are fixed by pinning transitive dependencies: - https://snyk.io/vuln/SNYK-PYTHON-BABEL-1278589 - https://snyk.io/vuln/SNYK-PYTHON-JINJA2-1012994 - https://snyk.io/vuln/SNYK-PYTHON-JINJA2-174126 - https://snyk.io/vuln/SNYK-PYTHON-PYGMENTS-1086606 - https://snyk.io/vuln/SNYK-PYTHON-PYGMENTS-1088505 - https://snyk.io/vuln/SNYK-PYTHON-REQUESTS-72435 - https://snyk.io/vuln/SNYK-PYTHON-SPHINX-570772 - https://snyk.io/vuln/SNYK-PYTHON-SPHINX-570773 - https://snyk.io/vuln/SNYK-PYTHON-URLLIB3-1014645 - https://snyk.io/vuln/SNYK-PYTHON-URLLIB3-1533435 - https://snyk.io/vuln/SNYK-PYTHON-URLLIB3-174323 - https://snyk.io/vuln/SNYK-PYTHON-URLLIB3-174464 --- requirements.txt | 12 ++++++------ 1 file changed, 6 insertions(+), 6 deletions(-) diff --git a/requirements.txt b/requirements.txt index c2886a7fe..2d0184100 100644 --- a/requirements.txt +++ b/requirements.txt @@ -1,20 +1,20 @@ alabaster==0.7.11 -Babel==2.6.0 +Babel==2.9.1 certifi==2018.4.16 chardet==3.0.4 docutils==0.14 idna==2.7 imagesize==1.0.0 -Jinja2==2.10 +Jinja2==2.11.3 MarkupSafe==1.0 packaging==17.1 -Pygments==2.2.0 +Pygments==2.7.4 pyparsing==2.2.0 pytz==2018.5 -requests==2.19.1 +requests==2.20 six==1.11.0 snowballstemmer==1.2.1 -Sphinx==1.7.6 +Sphinx==3.0.4 sphinx-sitemap==0.3.1 sphinxcontrib-websupport==1.1.0 -urllib3==1.23 +urllib3==1.26.5