snyk-bot
commited on
fix: requirements.txt to reduce vulnerabilities
Browse filesThe following vulnerabilities are fixed by pinning transitive dependencies:
- https://snyk.io/vuln/SNYK-PYTHON-CERTIFI-3164749
- https://snyk.io/vuln/SNYK-PYTHON-CERTIFI-5805047
- https://snyk.io/vuln/SNYK-PYTHON-REQUESTS-5595532
- requirements.txt +2 -0
requirements.txt
CHANGED
@@ -16,3 +16,5 @@ tiktoken==0.5.2
|
|
16 |
tornado>=6.3.3 # not directly required, pinned by Snyk to avoid a vulnerability
|
17 |
validators>=0.21.0 # not directly required, pinned by Snyk to avoid a vulnerability
|
18 |
wikipedia==1.4.0
|
|
|
|
|
|
16 |
tornado>=6.3.3 # not directly required, pinned by Snyk to avoid a vulnerability
|
17 |
validators>=0.21.0 # not directly required, pinned by Snyk to avoid a vulnerability
|
18 |
wikipedia==1.4.0
|
19 |
+
certifi>=2023.7.22 # not directly required, pinned by Snyk to avoid a vulnerability
|
20 |
+
requests>=2.31.0 # not directly required, pinned by Snyk to avoid a vulnerability
|