From e37b08bedbb767c950835e2526d592de6f9981e0 Mon Sep 17 00:00:00 2001 From: snyk-bot Date: Thu, 11 Jul 2024 14:38:33 +0000 Subject: [PATCH] fix: lib/modules/manager/pip_requirements/__fixtures__/requirements5.txt to reduce vulnerabilities The following vulnerabilities are fixed by pinning transitive dependencies: - https://snyk.io/vuln/SNYK-PYTHON-DJANGO-7435780 - https://snyk.io/vuln/SNYK-PYTHON-DJANGO-7436273 - https://snyk.io/vuln/SNYK-PYTHON-DJANGO-7436514 --- .../manager/pip_requirements/__fixtures__/requirements5.txt | 2 +- 1 file changed, 1 insertion(+), 1 deletion(-) diff --git a/lib/modules/manager/pip_requirements/__fixtures__/requirements5.txt b/lib/modules/manager/pip_requirements/__fixtures__/requirements5.txt index de53ecbede9cd0..1374734dda5e64 100644 --- a/lib/modules/manager/pip_requirements/__fixtures__/requirements5.txt +++ b/lib/modules/manager/pip_requirements/__fixtures__/requirements5.txt @@ -2,7 +2,7 @@ --index-url https://artifactory.company.com/artifactory/api/pypi/python/simple --trusted-host artifactory.company.com --default-timeout 600 --extra-index-url http://example.com/private-pypi/ # Packages -Django[argon2]==2.0.12 +Django==4.2.14 celery [redis]==4.1.1 foo [bar] == 3.2.1 # handles extra white space some-package==0.3.1