From 25a94255f3b681036d78cd441204eb04a3a53003 Mon Sep 17 00:00:00 2001 From: snyk-bot Date: Tue, 4 Feb 2025 20:12:16 +0000 Subject: [PATCH] fix: requirements-dev.txt to reduce vulnerabilities The following vulnerabilities are fixed by pinning transitive dependencies: - https://snyk.io/vuln/SNYK-PYTHON-SETUPTOOLS-3180412 - https://snyk.io/vuln/SNYK-PYTHON-SETUPTOOLS-7448482 --- requirements-dev.txt | 1 + 1 file changed, 1 insertion(+) diff --git a/requirements-dev.txt b/requirements-dev.txt index c04accc3f..c0ed9cf1e 100644 --- a/requirements-dev.txt +++ b/requirements-dev.txt @@ -22,3 +22,4 @@ requests==2.7.0 # Pinned because latest version requires Python 2.7+ (https://github.com/sphinx-doc/sphinx/issues/2919). sphinx==1.5.6 sphinx-rtd-theme==0.1.8 +setuptools>=70.0.0 # not directly required, pinned by Snyk to avoid a vulnerability