From 5477044fa91e300f4da33b58ee6da27f953a8f8b Mon Sep 17 00:00:00 2001 From: snyk-bot Date: Tue, 9 Jul 2024 18:41:05 +0000 Subject: [PATCH] fix: python/tools/recorded-call-graph-metrics/requirements.txt to reduce vulnerabilities The following vulnerabilities are fixed by pinning transitive dependencies: - https://snyk.io/vuln/SNYK-PYTHON-ZIPP-7430899 --- python/tools/recorded-call-graph-metrics/requirements.txt | 1 + 1 file changed, 1 insertion(+) diff --git a/python/tools/recorded-call-graph-metrics/requirements.txt b/python/tools/recorded-call-graph-metrics/requirements.txt index 06e58e23bf25..b8a2e7445586 100644 --- a/python/tools/recorded-call-graph-metrics/requirements.txt +++ b/python/tools/recorded-call-graph-metrics/requirements.txt @@ -3,3 +3,4 @@ lxml black flake8 flake8-bugbear +zipp>=3.19.1 # not directly required, pinned by Snyk to avoid a vulnerability