From 805201b660b0bbb697949a41025502ba32c4bab8 Mon Sep 17 00:00:00 2001 From: snyk-bot Date: Wed, 6 Nov 2024 12:49:16 +0000 Subject: [PATCH] fix: packages/requires.txt to reduce vulnerabilities The following vulnerabilities are fixed by pinning transitive dependencies: - https://snyk.io/vuln/SNYK-PYTHON-ANYIO-7361842 - https://snyk.io/vuln/SNYK-PYTHON-FASTAPI-6228055 - https://snyk.io/vuln/SNYK-PYTHON-SETUPTOOLS-7448482 - https://snyk.io/vuln/SNYK-PYTHON-STARLETTE-8186175 --- packages/requires.txt | 1 + 1 file changed, 1 insertion(+) diff --git a/packages/requires.txt b/packages/requires.txt index 7c586c798..e9a9ef04e 100644 --- a/packages/requires.txt +++ b/packages/requires.txt @@ -11,3 +11,4 @@ uvicorn[standard]>=0.17.6,<1 fastapi-utils>=0.2.1,<1 setuptools>=70.0.0 # not directly required, pinned by Snyk to avoid a vulnerability anyio>=4.4.0 # not directly required, pinned by Snyk to avoid a vulnerability +starlette>=0.40.0 # not directly required, pinned by Snyk to avoid a vulnerability