From 84e98b7a029c6364cea06dff88c66c54198b8a0e Mon Sep 17 00:00:00 2001 From: snyk-bot Date: Mon, 24 Jun 2024 23:18:47 +0000 Subject: [PATCH] fix: bot/requirements.txt to reduce vulnerabilities The following vulnerabilities are fixed by pinning transitive dependencies: - https://snyk.io/vuln/SNYK-PYTHON-ANYIO-7361842 --- bot/requirements.txt | 1 + 1 file changed, 1 insertion(+) diff --git a/bot/requirements.txt b/bot/requirements.txt index 1a83efd..95caa09 100644 --- a/bot/requirements.txt +++ b/bot/requirements.txt @@ -1,3 +1,4 @@ python-telegram-bot https://github.com/romangraef/configlib/archive/master.zip requests +anyio>=4.4.0 # not directly required, pinned by Snyk to avoid a vulnerability