From 1af71223e3b792f94ec4e3bf13f880aaa0ee85b7 Mon Sep 17 00:00:00 2001 From: "snyk-io[bot]" <141718529+snyk-io[bot]@users.noreply.github.com> Date: Wed, 1 Jan 2025 00:09:17 +0000 Subject: [PATCH] fix: __tests__/data/requirements-linux.txt to reduce vulnerabilities The following vulnerabilities are fixed by pinning transitive dependencies: - https://snyk.io/vuln/SNYK-PYTHON-PILLOW-5918878 - https://snyk.io/vuln/SNYK-PYTHON-PILLOW-6182918 --- __tests__/data/requirements-linux.txt | 3 ++- 1 file changed, 2 insertions(+), 1 deletion(-) diff --git a/__tests__/data/requirements-linux.txt b/__tests__/data/requirements-linux.txt index c9e14bba9..c9aaf42fb 100644 --- a/__tests__/data/requirements-linux.txt +++ b/__tests__/data/requirements-linux.txt @@ -9,4 +9,5 @@ pdf2image==1.12.1 Pygments==2.6.1 requests==2.24.0 urllib3==1.25.10 -xlrd==1.2.0 \ No newline at end of file +xlrd==1.2.0 +pillow>=10.2.0 # not directly required, pinned by Snyk to avoid a vulnerability \ No newline at end of file