From 8d7bd94fc057ae0097041131e0bed915e99b91a2 Mon Sep 17 00:00:00 2001 From: snyk-bot Date: Mon, 15 Jul 2024 08:03:46 +0000 Subject: [PATCH] fix: requirements_dev.txt to reduce vulnerabilities The following vulnerabilities are fixed by pinning transitive dependencies: - https://snyk.io/vuln/SNYK-PYTHON-ZIPP-7430899 --- requirements_dev.txt | 1 + 1 file changed, 1 insertion(+) diff --git a/requirements_dev.txt b/requirements_dev.txt index 9f26fad43024b..6d4d21d937bb6 100644 --- a/requirements_dev.txt +++ b/requirements_dev.txt @@ -16,3 +16,4 @@ pre-commit scikit-build numpy ninja; platform_system != 'Windows' +zipp>=3.19.1 # not directly required, pinned by Snyk to avoid a vulnerability