From 1e999fc1ec002403a5a7cc569e830c331354aa36 Mon Sep 17 00:00:00 2001 From: snyk-bot Date: Fri, 23 Feb 2024 01:22:34 +0000 Subject: [PATCH] fix: packages/release-trigger/requirements.txt to reduce vulnerabilities The following vulnerabilities are fixed by pinning transitive dependencies: - https://snyk.io/vuln/SNYK-PYTHON-CRYPTOGRAPHY-6261585 --- packages/release-trigger/requirements.txt | 2 +- 1 file changed, 1 insertion(+), 1 deletion(-) diff --git a/packages/release-trigger/requirements.txt b/packages/release-trigger/requirements.txt index cd4c91c0a15..7476eb1c31f 100644 --- a/packages/release-trigger/requirements.txt +++ b/packages/release-trigger/requirements.txt @@ -90,7 +90,7 @@ click==8.0.4 \ --hash=sha256:6a7a62563bbfabfda3a38f3023a1db4a35978c0abd76f6c9605ecd6554d6d9b1 \ --hash=sha256:8458d7b1287c5fb128c90e23381cf99dcde74beaf6c7ff6384ce84d6fe090adb # via gcp-releasetool -cryptography==41.0.6 \ +cryptography==42.0.4 \ --hash=sha256:068bc551698c234742c40049e46840843f3d98ad7ce265fd2bd4ec0d11306596 \ --hash=sha256:0f27acb55a4e77b9be8d550d762b0513ef3fc658cd3eb15110ebbcbd626db12c \ --hash=sha256:2132d5865eea673fe6712c2ed5fb4fa49dba10768bb4cc798345748380ee3660 \