From 896af1b43fcaaa740dbf975335dde4d186f63ba4 Mon Sep 17 00:00:00 2001 From: snyk-bot Date: Sun, 11 Jan 2026 01:55:11 +0000 Subject: [PATCH] fix: requirements.txt to reduce vulnerabilities The following vulnerabilities are fixed by pinning transitive dependencies: - https://snyk.io/vuln/SNYK-PYTHON-AIOHTTP-14871873 - https://snyk.io/vuln/SNYK-PYTHON-AIOHTTP-14871876 - https://snyk.io/vuln/SNYK-PYTHON-AIOHTTP-14871877 - https://snyk.io/vuln/SNYK-PYTHON-AIOHTTP-14871888 - https://snyk.io/vuln/SNYK-PYTHON-AIOHTTP-14871929 - https://snyk.io/vuln/SNYK-PYTHON-AIOHTTP-14871954 - https://snyk.io/vuln/SNYK-PYTHON-AIOHTTP-14871979 - https://snyk.io/vuln/SNYK-PYTHON-AIOHTTP-14872000 - https://snyk.io/vuln/SNYK-PYTHON-URLLIB3-14896210 --- requirements.txt | 4 ++-- 1 file changed, 2 insertions(+), 2 deletions(-) diff --git a/requirements.txt b/requirements.txt index 9ebdd1a494..dec22a4f5b 100644 --- a/requirements.txt +++ b/requirements.txt @@ -1,4 +1,4 @@ -aiohttp==3.8.4 +aiohttp==3.13.3 aiosignal==1.3.1 alembic==1.11.1 amqp==5.1.1 @@ -129,7 +129,7 @@ tqdm==4.65.0 tweepy==4.14.0 typing-inspect==0.8.0 ujson==5.7.0 -urllib3==1.26.16 +urllib3==2.6.3 uvicorn==0.22.0 vine==5.0.0 w3lib==2.1.1