From fc1cbeb6d3082f8b8e1dc6ad2e9e07a829232537 Mon Sep 17 00:00:00 2001 From: snyk-bot Date: Tue, 27 Feb 2024 08:24:25 +0000 Subject: [PATCH] fix: requirements/requirements-dev.txt to reduce vulnerabilities The following vulnerabilities are fixed by pinning transitive dependencies: - https://snyk.io/vuln/SNYK-PYTHON-WHEEL-3180413 --- requirements/requirements-dev.txt | 1 + 1 file changed, 1 insertion(+) diff --git a/requirements/requirements-dev.txt b/requirements/requirements-dev.txt index 04d60e8..b07682b 100644 --- a/requirements/requirements-dev.txt +++ b/requirements/requirements-dev.txt @@ -4,3 +4,4 @@ setuptools>=65.5.1 build # building the package {pyproject-build} twine # to publish on pypi {twine upload --repository-url=https://test.pypi.org/legacy/ dist/*} {twine upload dist/*} johnnydep # to see dependencies {johnnydep } +wheel>=0.38.0 # not directly required, pinned by Snyk to avoid a vulnerability