From 9b73cc9a06f88555f46b118efc2139bc32a08794 Mon Sep 17 00:00:00 2001 From: =?UTF-8?q?St=C3=A9phane=20Brunner?= Date: Wed, 19 Jun 2024 08:55:20 +0200 Subject: [PATCH] Fix CVE [MEDIUM] urllib3@1.26.18: SNYK-PYTHON-URLLIB3-7267250 CWE-212 [Fixed in: 1.26.19, 2.2.2]. --- ci/requirements.txt | 9 ++------- 1 file changed, 2 insertions(+), 7 deletions(-) diff --git a/ci/requirements.txt b/ci/requirements.txt index 0344470231..32e75d3dae 100644 --- a/ci/requirements.txt +++ b/ci/requirements.txt @@ -1,8 +1,3 @@ c2cciutils==1.1.40 -pip>=21.1 # not directly required, pinned by Snyk to avoid a vulnerability -urllib3>=1.26.5 # not directly required, pinned by Snyk to avoid a vulnerability -setuptools>=65.5.1 # not directly required, pinned by Snyk to avoid a vulnerability -certifi>=2022.12.7 # not directly required, pinned by Snyk to avoid a vulnerability -cryptography>=39.0.1 # not directly required, pinned by Snyk to avoid a vulnerability -requests>=2.31.0 # not directly required, pinned by Snyk to avoid a vulnerability -pygments>=2.15.0 # not directly required, pinned by Snyk to avoid a vulnerability +cryptography>=42.0.8 # not directly required, pinned by Snyk to avoid a vulnerability +urllib3>=1.26.19 # not directly required, pinned by Snyk to avoid a vulnerability