fix: dev-requirements.txt to reduce vulnerabilities

The following vulnerabilities are fixed by pinning transitive dependencies:
- https://snyk.io/vuln/SNYK-PYTHON-SETUPTOOLS-3180412
- https://snyk.io/vuln/SNYK-PYTHON-SETUPTOOLS-7448482
- https://snyk.io/vuln/SNYK-PYTHON-ZIPP-7430899
snyk-fix-405fe97ef8346de4445f6115fe8c9cfe
snyk-bot 2024-09-18 12:06:06 +00:00
parent 75fdc8f46e
commit 095a1c3e96
No known key found for this signature in database
GPG Key ID: 78AC5AE55A47A65B
1 changed files with 2 additions and 1 deletions

View File

@ -11,4 +11,5 @@ pyright
requirements-parser requirements-parser
ruff ruff
semgrep semgrep
setuptools>=65.5.1 # not directly required, pinned by Snyk to avoid a vulnerability setuptools>=70.0.0 # not directly required, pinned by Snyk to avoid a vulnerability
zipp>=3.19.1 # not directly required, pinned by Snyk to avoid a vulnerability