From ad39e8ac9297cc5bb75290c3e0ac41a921f86c82 Mon Sep 17 00:00:00 2001 From: snyk-bot Date: Thu, 31 Oct 2024 21:00:37 +0000 Subject: [PATCH] fix: samples/openapi3/server/petstore/python-flask-python2/requirements.txt to reduce vulnerabilities The following vulnerabilities are fixed by pinning transitive dependencies: - https://snyk.io/vuln/SNYK-PYTHON-WERKZEUG-8309091 - https://snyk.io/vuln/SNYK-PYTHON-WERKZEUG-8309092 --- .../server/petstore/python-flask-python2/requirements.txt | 1 + 1 file changed, 1 insertion(+) diff --git a/samples/openapi3/server/petstore/python-flask-python2/requirements.txt b/samples/openapi3/server/petstore/python-flask-python2/requirements.txt index 55ef66307fc4..361ef83503c4 100644 --- a/samples/openapi3/server/petstore/python-flask-python2/requirements.txt +++ b/samples/openapi3/server/petstore/python-flask-python2/requirements.txt @@ -14,3 +14,4 @@ typing >= 3.5.2.2 # https://github.com/yaml/pyyaml/issues/387 pyyaml < 5.3; python_version<="2.7" setuptools >= 21.0.0 +werkzeug>=3.0.6 # not directly required, pinned by Snyk to avoid a vulnerability