From 43818ee9416c1cd4ab0dd4adf7d04671866fbf52 Mon Sep 17 00:00:00 2001 From: snyk-bot Date: Tue, 16 Jul 2024 02:49:37 +0000 Subject: [PATCH] fix: support/pip-requirements.txt to reduce vulnerabilities The following vulnerabilities are fixed by pinning transitive dependencies: - https://snyk.io/vuln/SNYK-PYTHON-SETUPTOOLS-7448482 --- support/pip-requirements.txt | 1 + 1 file changed, 1 insertion(+) diff --git a/support/pip-requirements.txt b/support/pip-requirements.txt index 89ce64da884..12d10ca09d9 100644 --- a/support/pip-requirements.txt +++ b/support/pip-requirements.txt @@ -1,3 +1,4 @@ nodeenv==1.3.1 pylint==2.3.1 tox==3.2.1 +setuptools>=70.0.0 # not directly required, pinned by Snyk to avoid a vulnerability