From d6a70437b1ccb3c0cddc86880ddc3649c6e66e7e Mon Sep 17 00:00:00 2001 From: snyk-bot Date: Wed, 6 Mar 2024 00:32:53 +0000 Subject: [PATCH] fix: requirements.txt to reduce vulnerabilities The following vulnerabilities are fixed by pinning transitive dependencies: - https://snyk.io/vuln/SNYK-PYTHON-SETUPTOOLS-3180412 - https://snyk.io/vuln/SNYK-PYTHON-WHEEL-3180413 --- requirements.txt | 4 +++- 1 file changed, 3 insertions(+), 1 deletion(-) diff --git a/requirements.txt b/requirements.txt index 9f1ee14..82f8f5f 100644 --- a/requirements.txt +++ b/requirements.txt @@ -6,4 +6,6 @@ gnutools-python mpi4py six bson -chardet \ No newline at end of file +chardet +setuptools>=65.5.1 # not directly required, pinned by Snyk to avoid a vulnerability +wheel>=0.38.0 # not directly required, pinned by Snyk to avoid a vulnerability \ No newline at end of file