From 5a8595c0620db3e49e1426e95a04b82893cc42e2 Mon Sep 17 00:00:00 2001 From: snyk-bot Date: Fri, 28 Oct 2022 05:19:43 +0000 Subject: [PATCH] fix: requirements.txt to reduce vulnerabilities The following vulnerabilities are fixed by pinning transitive dependencies: - https://snyk.io/vuln/SNYK-PYTHON-LXML-1047473 - https://snyk.io/vuln/SNYK-PYTHON-LXML-1047474 - https://snyk.io/vuln/SNYK-PYTHON-LXML-1088006 - https://snyk.io/vuln/SNYK-PYTHON-LXML-2316995 - https://snyk.io/vuln/SNYK-PYTHON-LXML-2940874 - https://snyk.io/vuln/SNYK-PYTHON-LXML-72651 --- requirements.txt | 2 +- 1 file changed, 1 insertion(+), 1 deletion(-) diff --git a/requirements.txt b/requirements.txt index 1c6db1a..a357976 100644 --- a/requirements.txt +++ b/requirements.txt @@ -2,5 +2,5 @@ Django==1.11.20 #django-tagging==0.3.1 django-tagging==0.4.6 django-sendfile==0.3.11 -lxml==3.4.4 +lxml==4.9.1 django-taggit==0.22.1