From 6f2fe4657a36efb7235820bd0631f712db85ad05 Mon Sep 17 00:00:00 2001 From: Snyk bot Date: Mon, 5 Apr 2021 10:03:50 +0300 Subject: [PATCH] fix: cvat/requirements/base.txt to reduce vulnerabilities (#3063) The following vulnerabilities are fixed by pinning transitive dependencies: - https://snyk.io/vuln/SNYK-PYTHON-PILLOW-1090584 - https://snyk.io/vuln/SNYK-PYTHON-PILLOW-1090586 - https://snyk.io/vuln/SNYK-PYTHON-PILLOW-1090587 - https://snyk.io/vuln/SNYK-PYTHON-PILLOW-1090588 --- cvat/requirements/base.txt | 2 +- 1 file changed, 1 insertion(+), 1 deletion(-) diff --git a/cvat/requirements/base.txt b/cvat/requirements/base.txt index a6501a4e..3d1668bc 100644 --- a/cvat/requirements/base.txt +++ b/cvat/requirements/base.txt @@ -6,7 +6,7 @@ django-cacheops==5.0.1 django-compressor==2.4 django-rq==2.3.2 EasyProcess==0.3 -Pillow==8.1.2 +Pillow==8.2.0 numpy==1.19.5 python-ldap==3.3.1 pytz==2020.1