From 9297cf9557ad8ea99f886b5ba09333667483fabc Mon Sep 17 00:00:00 2001 From: snyk-bot Date: Mon, 8 Dec 2025 04:16:29 +0000 Subject: [PATCH] fix: requirements.txt to reduce vulnerabilities The following vulnerabilities are fixed by pinning transitive dependencies: - https://snyk.io/vuln/SNYK-PYTHON-URLLIB3-14192442 - https://snyk.io/vuln/SNYK-PYTHON-URLLIB3-14192443 --- requirements.txt | 1 + 1 file changed, 1 insertion(+) diff --git a/requirements.txt b/requirements.txt index 7c82d69..dc86d28 100644 --- a/requirements.txt +++ b/requirements.txt @@ -47,3 +47,4 @@ git+https://github.com/openprocurement/barbecue.git git+https://github.com/openprocurement/python-json-patch.git git+https://github.com/openprocurement/rfc6266.git -e git+https://github.com/openprocurement/openprocurement.api.git@master#egg=openprocurement.api +urllib3>=2.6.0 # not directly required, pinned by Snyk to avoid a vulnerability