From a2242901196c89bedb3e824ef49fc5f2fb936233 Mon Sep 17 00:00:00 2001 From: snyk-bot Date: Fri, 5 Jan 2024 16:35:48 +0000 Subject: [PATCH] fix: api-service/requirements.txt to reduce vulnerabilities The following vulnerabilities are fixed by pinning transitive dependencies: - https://snyk.io/vuln/SNYK-PYTHON-AIOHTTP-6091621 - https://snyk.io/vuln/SNYK-PYTHON-AIOHTTP-6091622 - https://snyk.io/vuln/SNYK-PYTHON-CRYPTOGRAPHY-6036192 - https://snyk.io/vuln/SNYK-PYTHON-CRYPTOGRAPHY-6092044 --- api-service/requirements.txt | 4 ++-- 1 file changed, 2 insertions(+), 2 deletions(-) diff --git a/api-service/requirements.txt b/api-service/requirements.txt index 2a59c69dc9..b76aa26429 100644 --- a/api-service/requirements.txt +++ b/api-service/requirements.txt @@ -4,7 +4,7 @@ # # pip-compile --output-file=requirements.txt requirements.in setup.py # -aiohttp==3.8.6 +aiohttp==3.9.0 # via cloudify-common aiosignal==1.3.1 # via aiohttp @@ -68,7 +68,7 @@ cloudify-rest-service @ https://github.com/cloudify-cosmo/cloudify-manager/archi # via # -r requirements.in # cloudify-api (setup.py) -cryptography==41.0.4 +cryptography==41.0.6 # via cloudify-rest-service distro==1.8.0 # via