From a472e05dc8835b758070db50be2bd92f405ab4d1 Mon Sep 17 00:00:00 2001 From: snyk-bot Date: Wed, 5 Jan 2022 05:12:02 +0000 Subject: [PATCH] fix: requirements.txt to reduce vulnerabilities The following vulnerabilities are fixed by pinning transitive dependencies: - https://snyk.io/vuln/SNYK-PYTHON-DJANGO-2329158 - https://snyk.io/vuln/SNYK-PYTHON-DJANGO-2329159 - https://snyk.io/vuln/SNYK-PYTHON-DJANGO-2329160 --- requirements.txt | 2 +- 1 file changed, 1 insertion(+), 1 deletion(-) diff --git a/requirements.txt b/requirements.txt index d4b992b..4e9c28c 100644 --- a/requirements.txt +++ b/requirements.txt @@ -1,7 +1,7 @@ -i https://pypi.python.org/simple asgiref==3.2.10; python_version >= '3.5' dj-database-url==0.5.0 -django==3.1.1 +django==2.2.26 gunicorn==20.0.4 psycopg2-binary==2.8.6 pytz==2020.1