From be6209914a77759a63bc0a63dc14d7dbd7e03ebe Mon Sep 17 00:00:00 2001 From: snyk-bot Date: Thu, 11 Jan 2024 22:23:55 +0000 Subject: [PATCH] fix: requirements-conda.txt to reduce vulnerabilities The following vulnerabilities are fixed by pinning transitive dependencies: - https://snyk.io/vuln/SNYK-PYTHON-JINJA2-6150717 --- requirements-conda.txt | 2 +- 1 file changed, 1 insertion(+), 1 deletion(-) diff --git a/requirements-conda.txt b/requirements-conda.txt index 5bc7ce613..be042a1cd 100644 --- a/requirements-conda.txt +++ b/requirements-conda.txt @@ -1,4 +1,4 @@ -jinja2>=2,<3 # Sphinx <4 is not compatible with Jinja >=3 +jinja2>=3.1.3,<3 # Sphinx <4 is not compatible with Jinja >=3 MarkupSafe>=1,<2 # Sphinx <4 is not compatible with MarkupSafe >=2 pre-commit>=2.10.0,<3 # For pre-commit hooks sphinx>=3,<4 # Sphinx-Multiversion is not compatible with Sphinx 4