From cba38169ed66040933cea54b890efc7d88f8e097 Mon Sep 17 00:00:00 2001 From: snyk-bot Date: Wed, 24 Dec 2025 16:49:58 +0000 Subject: [PATCH 1/2] fix: test-requirements.txt to reduce vulnerabilities The following vulnerabilities are fixed by pinning transitive dependencies: - https://snyk.io/vuln/SNYK-PYTHON-FILELOCK-14458335 --- test-requirements.txt | 1 + 1 file changed, 1 insertion(+) diff --git a/test-requirements.txt b/test-requirements.txt index a9930ba3..3c7b8036 100644 --- a/test-requirements.txt +++ b/test-requirements.txt @@ -10,3 +10,4 @@ setuptools>=70.0.0 tox urllib3>=2.2.2 # not directly required, pinned by Snyk to avoid a vulnerability zipp>=3.19.1 # not directly required, pinned by Snyk to avoid a vulnerability +filelock>=3.20.1 # not directly required, pinned by Snyk to avoid a vulnerability From 9d0a5c8eeafc00eb80b918e37e70bf2765d6fefb Mon Sep 17 00:00:00 2001 From: "pre-commit-ci[bot]" <66853113+pre-commit-ci[bot]@users.noreply.github.com> Date: Wed, 24 Dec 2025 16:50:17 +0000 Subject: [PATCH 2/2] [pre-commit.ci] auto fixes from pre-commit.com hooks for more information, see https://pre-commit.ci --- test-requirements.txt | 2 +- 1 file changed, 1 insertion(+), 1 deletion(-) diff --git a/test-requirements.txt b/test-requirements.txt index 3c7b8036..268d14e2 100644 --- a/test-requirements.txt +++ b/test-requirements.txt @@ -1,4 +1,5 @@ coverage!=4.4,>=4.0 # Apache-2.0 +filelock>=3.20.1 # not directly required, pinned by Snyk to avoid a vulnerability flake8 pre-commit pymarkdownlint @@ -10,4 +11,3 @@ setuptools>=70.0.0 tox urllib3>=2.2.2 # not directly required, pinned by Snyk to avoid a vulnerability zipp>=3.19.1 # not directly required, pinned by Snyk to avoid a vulnerability -filelock>=3.20.1 # not directly required, pinned by Snyk to avoid a vulnerability