From 442abd46e302f45d9f90a24d0c1e9afea7dd891c Mon Sep 17 00:00:00 2001 From: "snyk-io[bot]" <141718529+snyk-io[bot]@users.noreply.github.com> Date: Sat, 11 Oct 2025 15:33:56 +0000 Subject: [PATCH] fix: pip-sample/requirements.txt to reduce vulnerabilities The following vulnerabilities are fixed by pinning transitive dependencies: - https://snyk.io/vuln/SNYK-PYTHON-NUMPY-2321964 - https://snyk.io/vuln/SNYK-PYTHON-NUMPY-2321966 - https://snyk.io/vuln/SNYK-PYTHON-NUMPY-2321969 - https://snyk.io/vuln/SNYK-PYTHON-NUMPY-2321970 - https://snyk.io/vuln/SNYK-PYTHON-NUMPY-73513 - https://snyk.io/vuln/SNYK-PYTHON-SETUPTOOLS-3180412 - https://snyk.io/vuln/SNYK-PYTHON-SETUPTOOLS-7448482 - https://snyk.io/vuln/SNYK-PYTHON-SETUPTOOLS-9964606 --- pip-sample/requirements.txt | 3 ++- 1 file changed, 2 insertions(+), 1 deletion(-) diff --git a/pip-sample/requirements.txt b/pip-sample/requirements.txt index 680d08166..e109a6c93 100644 --- a/pip-sample/requirements.txt +++ b/pip-sample/requirements.txt @@ -30,7 +30,7 @@ nbconvert==5.4.0 nbformat==4.4.0 nltk==3.3 notebook==5.7.0 -numpy==1.15.3 +numpy==1.22.2 oauthlib==2.1.0 pandas==0.23.3 pandocfilters==1.4.2 @@ -65,3 +65,4 @@ webencodings==0.5.1 Werkzeug==0.14.1 widgetsnbextension==3.4.2 xlrd==1.1.0 +setuptools>=78.1.1 # not directly required, pinned by Snyk to avoid a vulnerability