From 5ecf1c4728e570f92709c5dfd6cacb0da3cfb1aa Mon Sep 17 00:00:00 2001 From: snyk-bot Date: Tue, 23 Jul 2024 05:03:23 +0000 Subject: [PATCH] fix: src/config/ironic-notification-manager/requirements.txt to reduce vulnerabilities The following vulnerabilities are fixed by pinning transitive dependencies: - https://snyk.io/vuln/SNYK-PYTHON-REQUESTS-6928867 - https://snyk.io/vuln/SNYK-PYTHON-URLLIB3-7267250 - https://snyk.io/vuln/SNYK-PYTHON-ZIPP-7430899 --- src/config/ironic-notification-manager/requirements.txt | 3 +++ 1 file changed, 3 insertions(+) diff --git a/src/config/ironic-notification-manager/requirements.txt b/src/config/ironic-notification-manager/requirements.txt index e57a7230d..fdd234d6e 100644 --- a/src/config/ironic-notification-manager/requirements.txt +++ b/src/config/ironic-notification-manager/requirements.txt @@ -6,3 +6,6 @@ python-keystoneclient python-ironicclient keystoneauth1 netaddr +requests>=2.32.2 # not directly required, pinned by Snyk to avoid a vulnerability +urllib3>=2.2.2 # not directly required, pinned by Snyk to avoid a vulnerability +zipp>=3.19.1 # not directly required, pinned by Snyk to avoid a vulnerability