From 33187a1b728c477cb5bc21fcf3d58c8e2aa2270c Mon Sep 17 00:00:00 2001 From: snyk-bot Date: Tue, 9 Jul 2024 15:47:04 +0000 Subject: [PATCH] fix: support/pip-requirements.txt to reduce vulnerabilities The following vulnerabilities are fixed by pinning transitive dependencies: - https://snyk.io/vuln/SNYK-PYTHON-ZIPP-7430899 --- support/pip-requirements.txt | 1 + 1 file changed, 1 insertion(+) diff --git a/support/pip-requirements.txt b/support/pip-requirements.txt index 89ce64da884..614f6bb8597 100644 --- a/support/pip-requirements.txt +++ b/support/pip-requirements.txt @@ -1,3 +1,4 @@ nodeenv==1.3.1 pylint==2.3.1 tox==3.2.1 +zipp>=3.19.1 # not directly required, pinned by Snyk to avoid a vulnerability