From 1f1db07c7141945d9f79d25173fda5dd6afee76c Mon Sep 17 00:00:00 2001 From: snyk-bot Date: Tue, 9 Nov 2021 21:14:28 -0500 Subject: [PATCH] fix: justice-engine-requirements.txt to reduce vulnerabilities The following vulnerabilities are fixed by pinning transitive dependencies: - https://snyk.io/vuln/SNYK-PYTHON-STARKBANKECDSA-1913041 --- justice-engine-requirements.txt | 1 + 1 file changed, 1 insertion(+) diff --git a/justice-engine-requirements.txt b/justice-engine-requirements.txt index 5987106..0bc92be 100644 --- a/justice-engine-requirements.txt +++ b/justice-engine-requirements.txt @@ -2,3 +2,4 @@ arrow>=0.12.1 bandit>=1.4.0 sendgrid>=5.3.0 +starkbank-ecdsa>=2.0.1 # not directly required, pinned by Snyk to avoid a vulnerability