Skip to content

Commit

Permalink
fix: requirements-demo.txt to reduce vulnerabilities
Browse files Browse the repository at this point in the history
The following vulnerabilities are fixed by pinning transitive dependencies:
- https://snyk.io/vuln/SNYK-PYTHON-PILLOW-6043904
- https://snyk.io/vuln/SNYK-PYTHON-TORNADO-6041512
  • Loading branch information
snyk-bot committed Nov 3, 2023
1 parent 983c163 commit e4052a5
Showing 1 changed file with 2 additions and 0 deletions.
2 changes: 2 additions & 0 deletions requirements-demo.txt
Original file line number Diff line number Diff line change
Expand Up @@ -3,3 +3,5 @@ matplotlib>=3.1.*
quandl>=3.5.*
pandas>=1.0.*
setuptools>=65.5.1 # not directly required, pinned by Snyk to avoid a vulnerability
pillow>=10.0.0 # not directly required, pinned by Snyk to avoid a vulnerability
tornado>=6.3.3 # not directly required, pinned by Snyk to avoid a vulnerability

0 comments on commit e4052a5

Please sign in to comment.