From b17d650c4b91b679a04e9134f5f4406724454e05 Mon Sep 17 00:00:00 2001 From: snyk-bot Date: Tue, 26 Sep 2023 17:28:27 +0000 Subject: [PATCH] fix: requirements_dev.txt to reduce vulnerabilities The following vulnerabilities are fixed by pinning transitive dependencies: - https://snyk.io/vuln/SNYK-PYTHON-PILLOW-5918878 --- requirements_dev.txt | 1 + 1 file changed, 1 insertion(+) diff --git a/requirements_dev.txt b/requirements_dev.txt index be3a093a..b28a6987 100644 --- a/requirements_dev.txt +++ b/requirements_dev.txt @@ -18,3 +18,4 @@ matplotlib pre-commit tornado>=6.3.3 # not directly required, pinned by Snyk to avoid a vulnerability jupyter-server>=2.7.2 # not directly required, pinned by Snyk to avoid a vulnerability +pillow>=10.0.1 # not directly required, pinned by Snyk to avoid a vulnerability