From fbfac630cd58004b6fde7ca1e877701970a2ff7c Mon Sep 17 00:00:00 2001 From: snyk-bot Date: Thu, 2 Nov 2023 01:43:55 +0000 Subject: [PATCH] fix: requirements-release.txt to reduce vulnerabilities The following vulnerabilities are fixed by pinning transitive dependencies: - https://snyk.io/vuln/SNYK-PYTHON-TORNADO-6041512 --- requirements-release.txt | 1 + 1 file changed, 1 insertion(+) diff --git a/requirements-release.txt b/requirements-release.txt index 7c8ef517527..87c351f49d8 100644 --- a/requirements-release.txt +++ b/requirements-release.txt @@ -9,3 +9,4 @@ twine parameterized # Dependencies for the reference implementation. -r requirements-reference.txt +tornado>=6.3.3 # not directly required, pinned by Snyk to avoid a vulnerability