From 9a371efed5d515e4be070dd2e7e81794c3b4c4af Mon Sep 17 00:00:00 2001 From: snyk-bot Date: Tue, 8 Nov 2022 00:09:08 +0000 Subject: [PATCH] fix: test-requirements.txt to reduce vulnerabilities The following vulnerabilities are fixed by pinning transitive dependencies: - https://snyk.io/vuln/SNYK-PYTHON-JINJA2-1012994 - https://snyk.io/vuln/SNYK-PYTHON-JINJA2-174126 - https://snyk.io/vuln/SNYK-PYTHON-PYYAML-42159 - https://snyk.io/vuln/SNYK-PYTHON-PYYAML-559098 - https://snyk.io/vuln/SNYK-PYTHON-PYYAML-590151 --- test-requirements.txt | 2 ++ 1 file changed, 2 insertions(+) diff --git a/test-requirements.txt b/test-requirements.txt index a43df81f..7d77251d 100644 --- a/test-requirements.txt +++ b/test-requirements.txt @@ -8,3 +8,5 @@ pylint pytest # for integration and platform tests cloudify>=3.4.1 +jinja2>=2.11.3 # not directly required, pinned by Snyk to avoid a vulnerability +pyyaml>=5.4 # not directly required, pinned by Snyk to avoid a vulnerability