From 92a3bff6d2848af6d4eb9cc61bb04831c3d48429 Mon Sep 17 00:00:00 2001 From: Denis Stepulenok Date: Thu, 9 Jan 2025 18:38:50 +0200 Subject: [PATCH 1/3] fix: requirements.txt to reduce vulnerabilities (#3) The following vulnerabilities are fixed by pinning transitive dependencies: - https://snyk.io/vuln/SNYK-PYTHON-TORNADO-8400708 Co-authored-by: snyk-bot --- requirements.txt | 1 + 1 file changed, 1 insertion(+) diff --git a/requirements.txt b/requirements.txt index 89d64c3034..b77578cf42 100644 --- a/requirements.txt +++ b/requirements.txt @@ -1,2 +1,3 @@ mkdocs==1.0.4 mkdocs-material==4.0.2 +tornado>=6.4.2 # not directly required, pinned by Snyk to avoid a vulnerability From 8c6e260dc8f4822c7f4ae57a8b05e23bc2567ef6 Mon Sep 17 00:00:00 2001 From: Denis Stepulenok Date: Thu, 9 Jan 2025 18:40:38 +0200 Subject: [PATCH 2/3] fix: requirements.txt to reduce vulnerabilities (#4) The following vulnerabilities are fixed by pinning transitive dependencies: - https://snyk.io/vuln/SNYK-PYTHON-TORNADO-5537286 - https://snyk.io/vuln/SNYK-PYTHON-TORNADO-5840803 - https://snyk.io/vuln/SNYK-PYTHON-TORNADO-6041512 - https://snyk.io/vuln/SNYK-PYTHON-TORNADO-7217828 - https://snyk.io/vuln/SNYK-PYTHON-TORNADO-7217829 - https://snyk.io/vuln/SNYK-PYTHON-TORNADO-8400708 Co-authored-by: snyk-bot From b760bb912e9f55dc735d6053ab9a6962e955d9bc Mon Sep 17 00:00:00 2001 From: Denis Stepulenok Date: Mon, 29 Dec 2025 06:54:47 +0200 Subject: [PATCH 3/3] fix: requirements.txt to reduce vulnerabilities (#5) The following vulnerabilities are fixed by pinning transitive dependencies: - https://snyk.io/vuln/SNYK-PYTHON-PYMDOWNEXTENSIONS-12427119 - https://snyk.io/vuln/SNYK-PYTHON-TORNADO-14400977 - https://snyk.io/vuln/SNYK-PYTHON-TORNADO-14400978 - https://snyk.io/vuln/SNYK-PYTHON-TORNADO-14400979 Co-authored-by: snyk-bot --- requirements.txt | 3 ++- 1 file changed, 2 insertions(+), 1 deletion(-) diff --git a/requirements.txt b/requirements.txt index b77578cf42..2fbb541a24 100644 --- a/requirements.txt +++ b/requirements.txt @@ -1,3 +1,4 @@ mkdocs==1.0.4 mkdocs-material==4.0.2 -tornado>=6.4.2 # not directly required, pinned by Snyk to avoid a vulnerability +tornado>=6.5.3 # not directly required, pinned by Snyk to avoid a vulnerability +pymdown-extensions>=10.16.1 # not directly required, pinned by Snyk to avoid a vulnerability